CVE Vulnerabilities

CVE-2013-1139

Published: Feb 27, 2013 | Modified: Feb 27, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The nsAPI interface in Cisco Cloud Portal 9.1 SP1 and SP2, and 9.3 through 9.3.2, does not properly check privileges, which allows remote authenticated users to obtain sensitive information via a crafted URL, aka Bug ID CSCud81134.

Affected Software

Name Vendor Start Version End Version
Cloud_portal Cisco 9.1-sp1 (including) 9.1-sp1 (including)
Cloud_portal Cisco 9.1-sp2 (including) 9.1-sp2 (including)
Cloud_portal Cisco 9.3 (including) 9.3 (including)
Cloud_portal Cisco 9.3.1 (including) 9.3.1 (including)
Cloud_portal Cisco 9.3.2 (including) 9.3.2 (including)

References