CVE-2013-3431: High severity Cisco Video Surveillance Manager vulnerability
Cisco Video Surveillance Manager (VSM) before 7.0.0 does not require authentication for access to VSMC monitoring pages, which allows remote attackers to obtain sensitive configuration, archive, and log information via unspecified vectors, related to the CiscoVSBWT (aka Broadware sample code) package, aka Bug ID CSCsv40169.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3431?
CVE-2013-3431 is classified as a moderate severity vulnerability.
How do I fix CVE-2013-3431?
To remediate CVE-2013-3431, upgrade Cisco Video Surveillance Manager to version 7.0.0 or later.
What type of vulnerability is CVE-2013-3431?
CVE-2013-3431 is an authentication bypass vulnerability allowing unauthorized access to monitoring pages.
What systems are affected by CVE-2013-3431?
CVE-2013-3431 affects Cisco Video Surveillance Manager versions prior to 7.0.0.
Can CVE-2013-3431 lead to data exposure?
Yes, CVE-2013-3431 can allow remote attackers to access sensitive configuration, archive, and log information.