imPC@ndo IT

Tracker / CVE-2004-1760

CVE-2004-1760

High 10.0

The default installation of Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, does not require authentication, which allows remote attackers to gain administrator privileges by connecting to TCP port 14247.

Affected products and versions

cisco call_manager
cisco conference_connection
cisco emergency_responder
cisco internet_service_node
cisco ip_call_center_express_enhanced
cisco ip_call_center_express_standard
cisco ip_interactive_voice_response
cisco personal_assistant
ibm director_agent
ibm mcs-7815-1000
ibm mcs-7815i-2.0
ibm mcs-7835i-2.4
ibm mcs-7835i-3.0
ibm x330
ibm x340
ibm x342
ibm x345

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References