PT-2014-5177 · Cisco · Cisco Unified Communications Domain Manager+1

Published

2014-06-08

·

Updated

2015-12-04

·

CVE-2014-3281

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco Unified Communications Domain Manager (CDM) (affected versions not specified)
Description The issue concerns the web framework in VOSS, which does not properly implement access control. This allows remote attackers to obtain potentially sensitive user information by visiting an unspecified BVSMWeb web page.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-3281

Affected Products

Cisco Unified Communications Domain Manager
Voss