Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.0:*:*:*:*:*:*:*", "matchCriteriaId": "5A94D689-5C27-4F34-806F-CD107ADF9893", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.0.3:*:*:*:*:*:*:*", "matchCriteriaId": "2C905C4D-58D5-46E3-944F-53DCB147B34C", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.0.4:*:*:*:*:*:*:*", "matchCriteriaId": "6B91D77A-A96A-4A64-AFFE-7ECE001D2038", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "88AD3EC2-36B1-4E34-BD7F-B1D02B32178A", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.0.6:*:*:*:*:*:*:*", "matchCriteriaId": "5CC9C408-0BE2-45A6-ACB3-B9EBB22BC773", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.1:*:*:*:*:*:*:*", "matchCriteriaId": "499CD64C-8692-4BE7-8F5E-5964ACDA1972", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "D2152A29-7074-4659-AA8A-BB3E793ED4A6", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.2:*:*:*:*:*:*:*", "matchCriteriaId": "518309CD-F453-4B0B-8C1D-E534CE0E336B", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:3.3:*:*:*:*:*:*:*", "matchCriteriaId": "22DE1462-59AC-40BE-89DF-AB43CA3EC7BE", "vulnerable": true}, {"criteria": "cpe:2.3:a:cisco:ciscoworks_common_services:4.0.1:*:*:*:*:*:*:*", "matchCriteriaId": "4A06E304-2CEA-403E-A520-5E5B54489CFC", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote attackers to obtain potentially sensitive information about the engine name and database port via an unspecified request to UDP port 2638, aka Bug ID CSCsk35018."}, {"lang": "es", "value": "El componente de base de datos Sybase SQL Anywhere de Cisco CiscoWorks Common Services v3.x y v4.x anterior a v4.1 permite a atacantes remotos obtener informaci\u00f3n potencialmente sensible acerca del nombre del motor y el puerto de la base de datos a trav\u00e9s de una petici\u00f3n no especificada para el puerto UDP 2638, tambi\u00e9n conocido como Bug ID CSCsk35018."}], "id": "CVE-2011-2042", "lastModified": "2025-04-11T00:51:21.963", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": {"accessComplexity": "LOW", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 5.0, "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N", "version": "2.0"}, "exploitabilityScore": 10.0, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": false}]}, "published": "2011-10-22T02:59:19.103", "references": [{"source": "psirt@cisco.com", "url": "http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_common_services_software/3.3/release/notes/cs33rel.html"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_common_services_software/3.3/release/notes/cs33rel.html"}], "sourceIdentifier": "psirt@cisco.com", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "CWE-200"}], "source": "nvd@nist.gov", "type": "Primary"}]}