Absolute path traversal vulnerability in the Real-Time Monitoring Tool (RTMT) API in Cisco Unified Communications Manager (CUCM) allows remote authenticated users to read arbitrary files via a full pathname in an API command, aka Bug ID CSCur49414.
References
Configurations
Information
Published : 2015-01-22 06:01
Updated : 2017-01-02 18:59
NVD link : CVE-2014-8008
Mitre link : CVE-2014-8008
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
cisco
- unified_communications_manager