CVE-2014-7988: Infoleak
The Unified Messaging Service (UMS) in Cisco Unity Connection 10.5 and earlier allows remote authenticated users to obtain sensitive information by reading log files, aka Bug ID CSCur06493.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-7988?
CVE-2014-7988 is classified as a medium severity vulnerability due to its potential to expose sensitive information to authenticated users.
How do I fix CVE-2014-7988?
To fix CVE-2014-7988, upgrade to Cisco Unity Connection 10.6 or later, which resolves the issue.
Who is affected by CVE-2014-7988?
CVE-2014-7988 affects users of Cisco Unity Connection version 10.5 and earlier.
What type of vulnerability is CVE-2014-7988?
CVE-2014-7988 is an information disclosure vulnerability that allows remote authenticated users to access sensitive log files.
What are the consequences of CVE-2014-7988?
The consequences of CVE-2014-7988 include unauthorized access to sensitive log information, which may lead to further attacks or data breaches.