IT

Tracker / CVE-2010-4303

CVE-2010-4303

Medium 4.9

Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses world-readable permissions for the /etc/shadow file, which allows local users to discover encrypted passwords by reading this file, aka Bug ID CSCti54043.

Affected products and versions

cisco unified_videoconferencing_system_5110
cisco unified_videoconferencing_system_5110_firmware
cisco unified_videoconferencing_system_5115
cisco unified_videoconferencing_system_5115_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References