The bulk administration interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers to bypass authentication and read arbitrary files by using an unspecified prompt, aka Bug ID CSCum05340.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0724 | Vendor Advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=32825 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-02-12 21:24
Updated : 2014-02-13 09:13
NVD link : CVE-2014-0724
Mitre link : CVE-2014-0724
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
cisco
- unified_communications_manager