Skip to main content

Credentials Management Errors

CVE-2010-4303

Severity Medium
Score 4.9/10

Summary

Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses world-readable permissions for the /etc/shadow file, which allows local users to discover encrypted passwords by reading this file, aka Bug ID CSCti54043.

  • LOW
  • LOCAL
  • NONE
  • NONE
  • COMPLETE
  • NONE

CWE-255 - Credentials Management Errors

Weaknesses in this category are related to the management of credentials.

References

Advisory Timeline

  • Published