First published: Thu May 22 2008(Updated: )
Unspecified vulnerability in Cisco Unified Customer Voice Portal (CVP) 4.0.x before 4.0(2)_ES14, 4.1.x before 4.1(1)_ES11, and 7.x before 7.0(1) allows remote authenticated users with administrator role privileges to create, modify, or delete a superuser account.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Customer Voice Portal | =4.0 | |
Cisco Unified Customer Voice Portal | =7.0 | |
Cisco Unified Customer Voice Portal | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2053 is considered a high severity vulnerability due to the potential for remote authenticated users to create or modify superuser accounts.
To fix CVE-2008-2053, upgrade your Cisco Unified Customer Voice Portal to versions 4.0(2)_ES14, 4.1(1)_ES11, or 7.0(1) to eliminate the vulnerability.
CVE-2008-2053 affects users of Cisco Unified Customer Voice Portal versions 4.0.x, 4.1.x, and 7.x prior to the specified updates.
To mitigate CVE-2008-2053, restrict access to the Cisco Unified Customer Voice Portal and monitor user roles to prevent unauthorized access.
Attackers exploiting CVE-2008-2053 can create, modify, or delete superuser accounts, potentially leading to full control over the affected system.