Vulnerability Description
The default configuration of the CCAgent option before 9.0.8.4 in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Contact Center Standard Edition enables maintenance access, which allows remote attackers to monitor or reconfigure Contact Center operations via vectors involving TSA_maintenance.exe.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Alcatel-Lucent | Ccagent | <= 8.0 |
| Alcatel-Lucent | Omnitouch Contact Center | - |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/41509Vendor Advisory
- http://www.alcatel-lucent.com/wps/DocumentStreamerServlet?LMSG_CABINET=CorporateVendor Advisory
- http://www.nruns.com/_downloads/nruns-SA-2010-001.pdf
- http://www.securityfocus.com/archive/1/513869
- http://www.securityfocus.com/bid/43340
- http://www.vupen.com/english/advisories/2010/2459Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61921
- http://secunia.com/advisories/41509Vendor Advisory
- http://www.alcatel-lucent.com/wps/DocumentStreamerServlet?LMSG_CABINET=CorporateVendor Advisory
- http://www.nruns.com/_downloads/nruns-SA-2010-001.pdf
- http://www.securityfocus.com/archive/1/513869
- http://www.securityfocus.com/bid/43340
- http://www.vupen.com/english/advisories/2010/2459Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61921
FAQ
What is CVE-2010-3279?
CVE-2010-3279 is a vulnerability with a CVSS score of 7.6 (HIGH). The default configuration of the CCAgent option before 9.0.8.4 in the management server (aka TSA) component in Alcatel-Lucent OmniTouch Contact Center Standard Edition enables maintenance access, whic...
How severe is CVE-2010-3279?
CVE-2010-3279 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-3279?
Check the references section above for vendor advisories and patch information. Affected products include: Alcatel-Lucent Ccagent, Alcatel-Lucent Omnitouch Contact Center.