First published: Tue Nov 10 2015(Updated: )
The web GUI in Cisco Connected Grid Network Management System (CG-NMS) 3.0(0.35) and 3.0(0.54) allows remote authenticated users to bypass intended access restrictions and modify the configuration by leveraging the Monitor-Only role, aka Bug ID CSCuw42640.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Connected Grid Network Management System | =3.0\(0.35\) | |
Cisco Connected Grid Network Management System | =3.0\(0.54\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.