First published: Wed Oct 02 2013(Updated: )
SQL injection vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCuh96567.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Domain Manager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5517 is considered a medium-severity vulnerability due to its potential for SQL injection attacks.
To fix CVE-2013-5517, upgrade to a patched version of Cisco Unified Communications Domain Manager as recommended by Cisco.
Remote authenticated users of Cisco Unified Communications Domain Manager are affected by CVE-2013-5517.
CVE-2013-5517 is an SQL injection vulnerability found in the web framework of Cisco Unified Communications Domain Manager.
CVE-2013-5517 can be exploited by sending a crafted URL that allows execution of arbitrary SQL commands.