Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2015-6404

Disclosure Date: December 15, 2015 (last updated October 05, 2023)
Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.
0
Attacker Value
Unknown

CVE-2015-6352

Disclosure Date: October 30, 2015 (last updated October 05, 2023)
Cisco Unified Communications Domain Manager before 10.6(1) provides different error messages for pathname access attempts depending on whether the pathname exists, which allows remote attackers to map a filesystem via a series of requests, aka Bug ID CSCut67891.
0
Attacker Value
Unknown

CVE-2015-4260

Disclosure Date: July 10, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Cisco Hosted Collaboration Solution 10.6(1) allows remote attackers to inject arbitrary web script or HTML via a crafted value in a URL, aka Bug ID CSCuu14862.
0
Attacker Value
Unknown

CVE-2015-0750

Disclosure Date: May 23, 2015 (last updated October 05, 2023)
The administrative web interface in Cisco Hosted Collaboration Solution (HCS) 10.6(1) and earlier allows remote authenticated users to execute arbitrary commands via crafted input to unspecified fields, aka Bug ID CSCut02786.
0