The disaster recovery system (DRS) in Cisco Unified Contact Center Express (Unified CCX) allows remote authenticated users to obtain sensitive information by reading extraneous fields in an HTML document, aka Bug ID CSCum95536.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0746 | Vendor Advisory |
http://www.securitytracker.com/id/1029842 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-02-26 17:55
Updated : 2015-07-31 18:35
NVD link : CVE-2014-0746
Mitre link : CVE-2014-0746
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
cisco
- unified_contact_center_express_editor_software