First published: Wed Jan 10 2024(Updated: )
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system and execute commands on the underlying operating system.This vulnerability is due to a lack of authentication
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unity Connection 8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-cuc-unauth-afu-FROYsCsD is critical due to the potential for unauthenticated remote code execution.
To fix cisco-sa-cuc-unauth-afu-FROYsCsD, update Cisco Unity Connection to the latest patched version provided by Cisco.
An attacker exploiting the cisco-sa-cuc-unauth-afu-FROYsCsD vulnerability can upload arbitrary files and execute commands on the affected system.
Cisco Unity Connection versions 8.6 are affected by the cisco-sa-cuc-unauth-afu-FROYsCsD vulnerability.
No, authentication is not required to exploit the vulnerability cisco-sa-cuc-unauth-afu-FROYsCsD.