First published: Thu Jul 18 2013(Updated: )
The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Ip Phones 9900 Series Firmware | ||
Cisco Unified Ip Phone 9951 | ||
Cisco Unified Ip Phone 9971 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.