PT-2014-3781 · Cisco · Cisco Unified Communications Manager

Published

2014-02-04

·

Updated

2018-01-03

·

CVE-2014-0686

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cisco Unified Communications Manager (aka Unified CM) versions 9.1(2.10000.28) and earlier
Description The issue allows local users to gain privileges by leveraging incorrect file permissions.
Recommendations For versions 9.1(2.10000.28) and earlier, update to a version that corrects the file permissions issue to prevent privilege escalation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-0686

Affected Products

Cisco Unified Communications Manager