CVE-2016-1360
Description
Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers installations, which allows local users to obtain cleartext data by leveraging console connectivity, aka Bug ID CSCuw85390.
Risk Information
Base Score
7.1
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
0.06
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Cisco Prime LAN Management Solution Default Decryption Key Vulnerability For CiscoWorks LMS Portal | NCM |
| Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-1360) | NCM |
Patch Details
No records foundReferences
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234