Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2015-6404
Disclosure Date: December 15, 2015 (last updated October 05, 2023)
Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.
0
Attacker Value
Unknown
CVE-2015-6352
Disclosure Date: October 30, 2015 (last updated October 05, 2023)
Cisco Unified Communications Domain Manager before 10.6(1) provides different error messages for pathname access attempts depending on whether the pathname exists, which allows remote attackers to map a filesystem via a series of requests, aka Bug ID CSCut67891.
0
Attacker Value
Unknown
CVE-2015-4260
Disclosure Date: July 10, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Cisco Hosted Collaboration Solution 10.6(1) allows remote attackers to inject arbitrary web script or HTML via a crafted value in a URL, aka Bug ID CSCuu14862.
0
Attacker Value
Unknown
CVE-2015-0750
Disclosure Date: May 23, 2015 (last updated October 05, 2023)
The administrative web interface in Cisco Hosted Collaboration Solution (HCS) 10.6(1) and earlier allows remote authenticated users to execute arbitrary commands via crafted input to unspecified fields, aka Bug ID CSCut02786.
0