First published: Wed Apr 22 2015(Updated: )
Multiple cross-site request forgery (CSRF) vulnerabilities in API features in Cisco Unified MeetingPlace 8.6(1.9) allow remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCus95884.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified MeetingPlace | =8.6\(1.9\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0704 is considered a moderate severity vulnerability due to its potential to allow unauthorized access through CSRF.
To fix CVE-2015-0704, you should apply the latest security patches provided by Cisco for Unified MeetingPlace 8.6(1.9).
CVE-2015-0704 is associated with cross-site request forgery (CSRF) attacks, allowing attackers to hijack user sessions.
CVE-2015-0704 affects users of Cisco Unified MeetingPlace version 8.6(1.9).
CVE-2015-0704 was reported on March 19, 2015.