Cisco Unified Communications Domain Manager 12.5(1.10000.22)

CPE Details

Cisco Unified Communications Domain Manager 12.5(1.10000.22)
12.5\(1.10000.22\)
2019-12-13
17h52 +00:00
2019-12-13
17h52 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cisco:unified_communications_domain_manager:12.5\(1.10000.22\):*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

unified_communications_domain_manager

Version

12.5\(1.10000.22\)

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-15968 2019-11-26 03h42 +00:00 A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager (Unified CDM) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected system. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.
5.4
Medium
CVE-2018-0364 2018-06-21 09h00 +00:00 A vulnerability in the web-based management interface of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user. Cisco Bug IDs: CSCvi44320.
8.8
High