#VU56420 Permissions, Privileges, and Access Controls in BroadWorks CommPilot Application Software - CVE-2021-34785
Published: September 9, 2021
BroadWorks CommPilot Application Software
Cisco Systems, Inc
Description
The vulnerability allows a remote administrator to escalate privileges on the system.
The vulnerability exists due to improper authorization checks on operations in the affected application. A remote administrator can send a specially crafted request, modify an existing system administrator account and assume the privileges of the targeted account.