CVE-2015-0683
published 2015-04-03CVE-2015-0683: Cisco Unified Communications Domain Manager 8.1(4) allows remote authenticated users to obtain sensitive information via a file-inclusion attack, aka Bug ID…
PriorityP416medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
1.33%
67.7th percentile
Cisco Unified Communications Domain Manager 8.1(4) allows remote authenticated users to obtain sensitive information via a file-inclusion attack, aka Bug ID CSCup94744.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | unified_communications_domain_manager | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Unified Communications Domain Manager Application Software Information Disclosure Vulnerability
vendor_cisco·2015-03-31·CVSS 4.0
CVE-2015-0683 [MEDIUM] CWE-200 Cisco Unified Communications Domain Manager Application Software Information Disclosure Vulnerability
Cisco Unified Communications Domain Manager Application Software Information Disclosure Vulnerability
A vulnerability in Cisco Unified Communications Domain Manager Application Software could allow an authenticated, remote attacker to gain access to sensitive information.
The vulnerability is due to unspecified condition within the affected software that could allow local file inclusion. An attacker who could successfully authenticate to a targeted system could exploit this vulnerability to view sensitive content on a targeted system. A successful exploit could be leveraged to conduct further attacks.
Cisco has confirmed the vulnerability and software updates are available.
To exploit this vulnerability, an attacker must authenticate to the targeted device. This access requirement dec
GHSA
GHSA-qq29-47mc-xxjq: Cisco Unified Communications Domain Manager 8
ghsa_unreviewed·2022-05-17
CVE-2015-0683 [MEDIUM] CWE-200 GHSA-qq29-47mc-xxjq: Cisco Unified Communications Domain Manager 8
Cisco Unified Communications Domain Manager 8.1(4) allows remote authenticated users to obtain sensitive information via a file-inclusion attack, aka Bug ID CSCup94744.
No detection rules found.
No writeups or analysis indexed.
2015-04-03
Published