CVE Vulnerabilities

CVE-2008-4545

Published: Oct 13, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8 uses weak permissions for the D:CommServerReports directory, which allows remote authenticated users to obtain sensitive information by reading files in this directory.

Affected Software

NameVendorStart VersionEnd Version
UnityCisco*4.2(1) (including)
UnityCisco*5.0(1) (including)
UnityCisco*7.0(2) (including)
UnityCisco4.0 (including)4.0 (including)
UnityCisco4.0(1) (including)4.0(1) (including)
UnityCisco4.0(2) (including)4.0(2) (including)
UnityCisco4.0(3) (including)4.0(3) (including)
UnityCisco4.0(3)-sr2 (including)4.0(3)-sr2 (including)
UnityCisco4.0(4) (including)4.0(4) (including)
UnityCisco4.0(4)-sr1 (including)4.0(4)-sr1 (including)
UnityCisco4.0(5) (including)4.0(5) (including)
UnityCisco4.1(1) (including)4.1(1) (including)
UnityCisco5.0 (including)5.0 (including)
UnityCisco7.0 (including)7.0 (including)

References