CVE Vulnerabilities

CVE-2014-3300

Published: Jul 07, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The BVSMWeb portal in the web framework in Cisco Unified Communications Domain Manager (CDM) in Unified CDM Application Software before 10 does not properly implement access control, which allows remote attackers to modify user information via a crafted URL, aka Bug ID CSCum77041.

Affected Software

NameVendorStart VersionEnd Version
Unified_cdm_application_softwareCisco*8.1.4 (including)
Unified_cdm_application_softwareCisco8.1 (including)8.1 (including)
Unified_communications_domain_managerCisco- (including)- (including)

References