PT-2015-4863 · Cisco · Cisco Finesse
Published
2015-05-29
·
Updated
2017-01-04
·
CVE-2015-0754
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:S/C:P/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Finesse version 10.5(1)
Description
The issue allows remote authenticated users to obtain sensitive information or cause a denial of service, resulting in CPU and memory consumption, via a crafted XML document.
Recommendations
For Cisco Finesse version 10.5(1), at the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Finesse