First published: Sat May 16 2015(Updated: )
Cisco Unified Communications Manager 10.0(1.10000.12) allows local users to gain privileges via a command string in an unspecified parameter, aka Bug ID CSCut19546.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Communications Manager | =10.0\(1.10000.12\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0717 is considered a high-severity vulnerability that allows local users to elevate privileges.
To fix CVE-2015-0717, upgrade to a patched version of Cisco Unified Communications Manager that addresses this vulnerability.
CVE-2015-0717 affects local users of Cisco Unified Communications Manager version 10.0(1.10000.12).
CVE-2015-0717 is a privilege escalation vulnerability due to improper handling of command strings.
No, CVE-2015-0717 requires local access to exploit the privilege escalation.