CVE Vulnerabilities

CVE-2008-4545

Published: Oct 13, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8 uses weak permissions for the D:CommServerReports directory, which allows remote authenticated users to obtain sensitive information by reading files in this directory.

Affected Software

Name Vendor Start Version End Version
Unity Cisco * 4.2(1) (including)
Unity Cisco * 5.0(1) (including)
Unity Cisco * 7.0(2) (including)
Unity Cisco 4.0 (including) 4.0 (including)
Unity Cisco 4.0(1) (including) 4.0(1) (including)
Unity Cisco 4.0(2) (including) 4.0(2) (including)
Unity Cisco 4.0(3) (including) 4.0(3) (including)
Unity Cisco 4.0(3)-sr2 (including) 4.0(3)-sr2 (including)
Unity Cisco 4.0(4) (including) 4.0(4) (including)
Unity Cisco 4.0(4)-sr1 (including) 4.0(4)-sr1 (including)
Unity Cisco 4.0(5) (including) 4.0(5) (including)
Unity Cisco 4.1(1) (including) 4.1(1) (including)
Unity Cisco 5.0 (including) 5.0 (including)
Unity Cisco 7.0 (including) 7.0 (including)

References