[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Full-disclosure] Cisco Security Advisory: Cisco WAAS Mobile Remote Code Execution Vulnerability
- To: full-disclosure@xxxxxxxxxxxxxxxxx
- Subject: [Full-disclosure] Cisco Security Advisory: Cisco WAAS Mobile Remote Code Execution Vulnerability
- From: Cisco Systems Product Security Incident Response Team <psirt@xxxxxxxxx>
- Date: Wed, 6 Nov 2013 11:20:01 -0500
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Cisco Security Advisory
Cisco WAAS Mobile Remote Code Execution Vulnerability
Advisory ID: cisco-sa-20131106-waasm
Revision 1.0
For Public Release 2013 November 6 16:00 UTC (GMT)
+------------------------------------------------------------------
Summary
=======
Cisco Wide Area Application Services (WAAS) Mobile contains a vulnerability
that could allow an unauthenticated, remote attacker to execute arbitrary code
on the Cisco WAAS Mobile server with the privileges of the Microsoft Internet
Information Services (IIS) web server.
Cisco has released free software updates that address this vulnerability. This
advisory is available at the following link:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20131106-waasm
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (SunOS)
iFcDBQFSekRGUddfH3/BbToRCN00AQCADPIVyRY3IlQWUP8airNTGgvEoUSldfEV
7PSc77PgsQD+NAhj1b/5GuHgYgGGGB3ue79dG6wNmAkkb48RJ5Eehs8=
=C2oN
-----END PGP SIGNATURE-----
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/