CVE-2014-0731
22.02.2014, 21:55
The administration interface in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to bypass authentication and read Java class files via a direct request, aka Bug ID CSCum46497.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | unified_communications_manager | 𝑥 ≤ 10.0\(1\) |
cisco | unified_communications_manager | 3.3\(5\) |
cisco | unified_communications_manager | 3.3\(5\)sr1 |
cisco | unified_communications_manager | 3.3\(5\)sr2a |
cisco | unified_communications_manager | 4.1\(3\) |
cisco | unified_communications_manager | 4.1\(3\)sr1 |
cisco | unified_communications_manager | 4.1\(3\)sr2 |
cisco | unified_communications_manager | 4.1\(3\)sr3 |
cisco | unified_communications_manager | 4.1\(3\)sr4 |
cisco | unified_communications_manager | 4.2 |
cisco | unified_communications_manager | 4.2.1 |
cisco | unified_communications_manager | 4.2.2 |
cisco | unified_communications_manager | 4.2.3 |
cisco | unified_communications_manager | 4.2.3sr1 |
cisco | unified_communications_manager | 4.2.3sr2 |
cisco | unified_communications_manager | 4.2.3sr2b |
cisco | unified_communications_manager | 4.3 |
cisco | unified_communications_manager | 10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration