CVE-2014-0741: Medium severity Cisco Unified Communications Manager vulnerability
The certificate-import feature in the Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to read or modify arbitrary files via a crafted command, aka Bug ID CSCum95461.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0741?
CVE-2014-0741 has a medium severity rating due to the potential for local users to read or modify arbitrary files.
How do I fix CVE-2014-0741?
To fix CVE-2014-0741, upgrade your Cisco Unified Communications Manager to a version later than 10.0(1).
Who is affected by CVE-2014-0741?
CVE-2014-0741 affects users of Cisco Unified Communications Manager versions 10.0(1) and earlier.
What impact does CVE-2014-0741 have?
CVE-2014-0741 allows local users to potentially access or modify sensitive files on affected systems.
Is there a workaround for CVE-2014-0741?
There are no known workarounds for CVE-2014-0741 other than applying the necessary software updates.