HIGH · 7.5

CVE-2003-0982

Buffer overflow in the authentication module for Cisco ACNS 4.x before 4.2.11, and 5.x before 5.0.5, allows remote attackers to execute arbitrary code via a long password.

Vulnerability Description

Buffer overflow in the authentication module for Cisco ACNS 4.x before 4.2.11, and 5.x before 5.0.5, allows remote attackers to execute arbitrary code via a long password.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
CiscoApplication And Content Networking Software4.0.3
CiscoContent Distribution Manager 4630All versions
CiscoContent Distribution Manager 4650All versions
CiscoContent Distribution Manager 4670All versions
CiscoContent Engine507
CiscoContent Engine Modulefor_cisco_router_2600_series
CiscoEnterprise Content Delivery Network Software4.0
CiscoContent Router 4430All versions
CiscoContent Router 4450All versions

References

FAQ

What is CVE-2003-0982?

CVE-2003-0982 is a vulnerability with a CVSS score of 7.5 (HIGH). Buffer overflow in the authentication module for Cisco ACNS 4.x before 4.2.11, and 5.x before 5.0.5, allows remote attackers to execute arbitrary code via a long password.

How severe is CVE-2003-0982?

CVE-2003-0982 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2003-0982?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Application And Content Networking Software, Cisco Content Distribution Manager 4630, Cisco Content Distribution Manager 4650, Cisco Content Distribution Manager 4670, Cisco Content Engine.