Cross-site request forgery (CSRF) vulnerability in the CUCReports page in Cisco Unity Connection 11.0(0.98000.225) and 11.0(0.98000.332) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCut33659.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/viewAlert.x?alertId=38675 | Vendor Advisory |
http://www.securitytracker.com/id/1032259 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2015-05-06 18:59
Updated : 2015-09-10 09:10
NVD link : CVE-2015-0716
Mitre link : CVE-2015-0716
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
cisco
- unity_connection