CVE-2014-0679: Input Validation
Cisco Prime Infrastructure 1.2 and 1.3 before 1.3.0.20-2, 1.4 before 1.4.0.45-2, and 2.0 before 2.0.0.0.294-2 allows remote authenticated users to execute arbitrary commands with root privileges via an unspecified URL, aka Bug ID CSCum71308.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0679?
CVE-2014-0679 is considered a high severity vulnerability due to the potential for remote authenticated users to execute arbitrary commands with root privileges.
How do I fix CVE-2014-0679?
To fix CVE-2014-0679, upgrade Cisco Prime Infrastructure to version 1.3.0.20-2, 1.4.0.45-2, or 2.0.0.0.294-2 or later.
What versions of Cisco Prime Infrastructure are affected by CVE-2014-0679?
CVE-2014-0679 affects Cisco Prime Infrastructure versions 1.2, 1.3, 1.4, and 2.0 prior to their respective patched versions.
Who is impacted by CVE-2014-0679?
Remote authenticated users of affected Cisco Prime Infrastructure versions can exploit CVE-2014-0679.
Is there a workaround for CVE-2014-0679?
No specific workaround is provided for CVE-2014-0679; upgrading to the latest version is recommended.