CVE-2003-0731: Critical severity cisco resource manager essentials vulnerability
CiscoWorks Common Management Foundation (CMF) 2.1 and earlier allows the guest user to gain administrative privileges via a certain POST request to com.cisco.nm.cmf.servlet.CsAuthServlet, possibly involving the "cmd" parameter with a modifyUser value and a modified "priviledges" parameter.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0731?
CVE-2003-0731 is classified as a high-severity vulnerability due to the potential for unauthorized administrative access.
How do I fix CVE-2003-0731?
To remediate CVE-2003-0731, it is recommended to upgrade to a patched version of the affected Cisco software.
Which Cisco products are affected by CVE-2003-0731?
CVE-2003-0731 affects CiscoWorks Common Management Foundation versions 2.1 and earlier, as well as several versions of Cisco Resource Manager.
What can an attacker do with CVE-2003-0731?
An attacker exploiting CVE-2003-0731 can gain unauthorized administrative privileges on the affected Cisco devices.
Is CVE-2003-0731 still a security concern today?
While CVE-2003-0731 was disclosed years ago, it is important to ensure no legacy systems are running vulnerable software due to the nature of the exploit.