Improper Authorization Enforcement in Cisco Context Directory Agent (CDA) Allows Remote Administrative Access

Improper Authorization Enforcement in Cisco Context Directory Agent (CDA) Allows Remote Administrative Access

CVE-2014-0651 · MEDIUM Severity

AV:N/AC:M/AU:S/C:P/I:P/A:N

The administrative interface in Cisco Context Directory Agent (CDA) does not properly enforce authorization requirements, which allows remote authenticated users to obtain administrative access by hijacking a session, aka Bug ID CSCuj45347.

Learn more about our Cis Benchmark Audit For Cisco.