cbcvebase.
CVE-2015-6352
published 2015-10-30

CVE-2015-6352: Cisco Unified Communications Domain Manager before 10.6(1) provides different error messages for pathname access attempts depending on whether the pathname…

medium4.3CVSS 3.1
AVNACMAuNCPINAN
Cisco Unified Communications Domain Manager before 10.6(1) provides different error messages for pathname access attempts depending on whether the pathname exists, which allows remote attackers to map a filesystem via a series of requests, aka Bug ID CSCut67891.

Affected

3 ranges
VendorProductVersion rangeFixed in
ciscohosted_collaboration_solution
ciscounified_communications_domain_manager
ciscounified_communications_domain_manager_uri_enumeration