CVE-2014-2184: Input Validation
Published Apr 29, 2014
·Updated
The IP Manager Assistant (IPMA) component in Cisco Unified Communications Manager (Unified CM) allows remote attackers to obtain sensitive information via a crafted URL, aka Bug ID CSCun74352.
Affected Software
1 affected component
Cisco Unified Communications Manager
Event History
Apr 29, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:37 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-2184?
CVE-2014-2184 has been classified as a medium severity vulnerability.
2
How does CVE-2014-2184 affect Cisco Unified Communications Manager?
CVE-2014-2184 allows remote attackers to obtain sensitive information via a crafted URL.
3
What are the risks associated with CVE-2014-2184?
The main risk of CVE-2014-2184 is the exposure of sensitive data that could be exploited by attackers.
4
What versions of Cisco Unified Communications Manager are affected by CVE-2014-2184?
CVE-2014-2184 affects multiple versions of Cisco Unified Communications Manager.
5
How do I fix CVE-2014-2184?
To fix CVE-2014-2184, you should apply the latest patches and updates provided by Cisco for Unified Communications Manager.