Cisco Mediator Framework 1.5.1 before 1.5.1.build.14-eng, 2.2 before 2.2.1.dev.1, and 3.0 before 3.0.9.release.1 on the Cisco Network Building Mediator NBM-2400 and NBM-4800 and the Richards-Zeta Mediator 2500 does not encrypt XML RPC sessions from operator workstations, which allows remote attackers to discover Administrator credentials by sniffing the network, aka Bug ID CSCtb83505.
References
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2010-05-27 19:30
Updated : 2010-06-13 19:16
NVD link : CVE-2010-0599
Mitre link : CVE-2010-0599
CVE.ORG link : CVE-2010-0599
JSON object : View
Products Affected
cisco
- network_building_mediator_nbm-2400
- network_building_mediator_nbm-4800
- richards-zeta_mediator_2500
- mediator_framework
CWE
CWE-255
Credentials Management Errors