CVE Vulnerabilities

CVE-2016-1322

Published: Feb 12, 2016 | Modified: Mar 01, 2016
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The REST interface in Cisco Spark 2015-07-04 allows remote attackers to bypass intended access restrictions and create arbitrary user accounts via unspecified web requests, aka Bug ID CSCuv72584.

Affected Software

Name Vendor Start Version End Version
Spark Cisco 2015-07-04_base (including) 2015-07-04_base (including)

References