CVE Vulnerabilities

CVE-2015-4307

Published: Sep 20, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The web framework in Cisco Prime Collaboration Provisioning before 11.0 allows remote authenticated users to bypass intended access restrictions and create administrative accounts via a crafted URL, aka Bug ID CSCut64111.

Affected Software

NameVendorStart VersionEnd Version
Prime_collaboration_provisioningCisco9.0.0 (including)9.0.0 (including)
Prime_collaboration_provisioningCisco9.5.0 (including)9.5.0 (including)
Prime_collaboration_provisioningCisco10.0.0 (including)10.0.0 (including)
Prime_collaboration_provisioningCisco10.5.0 (including)10.5.0 (including)
Prime_collaboration_provisioningCisco10.5.1 (including)10.5.1 (including)
Prime_collaboration_provisioningCisco10.6.0 (including)10.6.0 (including)

References