imPC@ndo IT

Tracker / CVE-2003-0983

CVE-2003-0983

High 7.5

Cisco Unity on IBM servers is shipped with default settings that should have been disabled by the manufacturer, which allows local or remote attackers to conduct unauthorized activities via (1) a "bubba" local user account, (2) an open TCP port 34571, or (3) when a local DHCP server is unavailable, a DHCP server on the manufacturer's test network.

Affected products and versions

cisco 80-7111-01_for_the_unity-svrx255-1a
cisco 80-7112-01_for_the_unity-svrx255-2a

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References