Multiple unspecified vulnerabilities in the web server in Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.3, and possibly 5 allow remote attackers to create (1) user or (2) administrator accounts via a crafted URL in a request to the internal interface, aka Bug IDs CSCtc59231 and CSCtd40661.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Unified_meetingplace | Cisco | 5.2 (including) | 5.2 (including) |
Unified_meetingplace | Cisco | 5.3 (including) | 5.3 (including) |
Unified_meetingplace | Cisco | 5.4 (including) | 5.4 (including) |
Unified_meetingplace | Cisco | 6.0 (including) | 6.0 (including) |
Unified_meetingplace | Cisco | 7.0 (including) | 7.0 (including) |
Unified_meetingplace | Cisco | 7.0.1 (including) | 7.0.1 (including) |
Unified_meetingplace | Cisco | 7.0.2 (including) | 7.0.2 (including) |