CVE-2011-3315

Directory traversal vulnerability in Cisco Unified Communications Manager (CUCM) 5.x and 6.x before 6.1(5)SU2, 7.x before 7.1(5b)SU2, and 8.x before 8.0(3), and Cisco Unified Contact Center Express (aka Unified CCX or UCCX) and Cisco Unified IP Interactive Voice Response (Unified IP-IVR) before 6.0(1)SR1ES8, 7.0(x) before 7.0(2)ES1, 8.0(x) through 8.0(2)SU3, and 8.5(x) before 8.5(1)SU2, allows remote attackers to read arbitrary files via a crafted URL, aka Bug IDs CSCth09343 and CSCts44049.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:N/A:N
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
ciscounified_ip_interactive_voice_response
-
ciscounified_ip_ivr
6.0\(1\)
ciscounified_ip_ivr
7.0\(1\)
ciscounified_ip_ivr
7.0\(2\)
ciscounified_ip_ivr
8.0\(1\)
ciscounified_ip_ivr
8.0\(2\)
ciscounified_ip_ivr
8.5\(1\)
ciscounified_communications_manager
5.0
ciscounified_communications_manager
5.1
ciscounified_communications_manager
5.1\(1\)
ciscounified_communications_manager
5.1\(1b\)
ciscounified_communications_manager
5.1\(1c\)
ciscounified_communications_manager
5.1\(2\)
ciscounified_communications_manager
5.1\(2a\)
ciscounified_communications_manager
5.1\(2b\)
ciscounified_communications_manager
5.1\(3\)
ciscounified_communications_manager
5.1\(3a\)
ciscounified_communications_manager
5.1\(3c\)
ciscounified_communications_manager
5.1\(3d\)
ciscounified_communications_manager
5.1\(3e\)
ciscounified_communications_manager
5.1.2
ciscounified_communications_manager
6.0
ciscounified_communications_manager
6.1\(1\)
ciscounified_communications_manager
6.1\(1a\)
ciscounified_communications_manager
6.1\(1b\)
ciscounified_communications_manager
6.1\(2\)
ciscounified_communications_manager
6.1\(2\)su1
ciscounified_communications_manager
6.1\(2\)su1a
ciscounified_communications_manager
6.1\(3\)
ciscounified_communications_manager
6.1\(3a\)
ciscounified_communications_manager
6.1\(3b\)
ciscounified_communications_manager
6.1\(3b\)su1
ciscounified_communications_manager
6.1\(4\)
ciscounified_communications_manager
6.1\(4\)su1
ciscounified_communications_manager
6.1\(4a\)
ciscounified_communications_manager
6.1\(4a\)su2
ciscounified_communications_manager
6.1\(5\)
ciscounified_communications_manager
6.1\(5\)su1
ciscounified_communications_manager
7.0\(1\)su1
ciscounified_communications_manager
7.0\(1\)su1a
ciscounified_communications_manager
7.0\(2\)
ciscounified_communications_manager
7.0\(2a\)
ciscounified_communications_manager
7.0\(2a\)su1
ciscounified_communications_manager
7.0\(2a\)su2
ciscounified_communications_manager
7.1\(2a\)
ciscounified_communications_manager
7.1\(2a\)su1
ciscounified_communications_manager
7.1\(2b\)
ciscounified_communications_manager
7.1\(2b\)su1
ciscounified_communications_manager
7.1\(3\)
ciscounified_communications_manager
7.1\(3a\)
ciscounified_communications_manager
7.1\(3a\)su1
ciscounified_communications_manager
7.1\(3a\)su1a
ciscounified_communications_manager
7.1\(3b\)
ciscounified_communications_manager
7.1\(3b\)su1
ciscounified_communications_manager
7.1\(3b\)su2
ciscounified_communications_manager
7.1\(5\)
ciscounified_communications_manager
7.1\(5\)su1
ciscounified_communications_manager
7.1\(5\)su1a
ciscounified_communications_manager
7.1\(5a\)
ciscounified_communications_manager
7.1\(5b\)
ciscounified_communications_manager
7.1\(5b\)su1
ciscounified_communications_manager
7.1\(5b\)su1a
ciscounified_communications_manager
8.0
ciscounified_communications_manager
8.0\(1\)
ciscounified_communications_manager
8.0\(2\)
ciscounified_communications_manager
8.0\(2a\)
ciscounified_communications_manager
8.0\(2b\)
ciscounified_communications_manager
8.0\(2c\)
ciscounified_communications_manager
8.0\(2c\)su1
𝑥
= Vulnerable software versions