First published: Fri Apr 03 2015(Updated: )
Cisco Unified Communications Domain Manager 8.1(4) allows remote authenticated users to obtain sensitive information via a file-inclusion attack, aka Bug ID CSCup94744.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Domain Manager Platform | =8.1\(.4\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0683 has a medium severity rating due to its potential for sensitive information disclosure.
To mitigate CVE-2015-0683, upgrade Cisco Unified Communications Domain Manager to a patched version that addresses this vulnerability.
CVE-2015-0683 affects authenticated users of Cisco Unified Communications Domain Manager version 8.1(4).
CVE-2015-0683 involves a file-inclusion attack that can be exploited to gain unauthorized access to sensitive information.
The primary concern with CVE-2015-0683 is that it allows an attacker to acquire confidential data through a vulnerability in the software.