CVE-2014-2378 - CERT CVE
ID CVE-2014-2378
Sažetak Sensys Networks VSN240-F and VSN240-T sensors VDS before 2.10.1 and TrafficDOT before 2.10.3 do not verify the integrity of downloaded updates, which allows remote attackers to execute arbitrary code via a Trojan horse update.
Reference
CVSS
Base: 7.6
Impact: 9.5
Exploitability:5.5
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK MEDIUM NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE PARTIAL
CVSS vektor AV:A/AC:M/Au:N/C:C/I:C/A:P
Zadnje važnije ažuriranje 08-09-2014 - 15:07
Objavljeno 05-09-2014 - 17:55