CVE-2013-5517: SQL Injection
SQL injection vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCuh96567.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5517?
CVE-2013-5517 is considered a medium-severity vulnerability due to its potential for SQL injection attacks.
How do I fix CVE-2013-5517?
To fix CVE-2013-5517, upgrade to a patched version of Cisco Unified Communications Domain Manager as recommended by Cisco.
Who is affected by CVE-2013-5517?
Remote authenticated users of Cisco Unified Communications Domain Manager are affected by CVE-2013-5517.
What type of vulnerability is CVE-2013-5517?
CVE-2013-5517 is an SQL injection vulnerability found in the web framework of Cisco Unified Communications Domain Manager.
What can exploit CVE-2013-5517?
CVE-2013-5517 can be exploited by sending a crafted URL that allows execution of arbitrary SQL commands.