Lucene search

K
cve[email protected]CVE-2010-1571
HistoryJun 10, 2010 - 12:30 a.m.

CVE-2010-1571

2010-06-1000:30:07
CWE-22
web.nvd.nist.gov
23
cve-2010-1571
cisco
uccx
directory traversal
vulnerability
nvd

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.2%

Directory traversal vulnerability in the bootstrap service in Cisco Unified Contact Center Express (UCCX) 7.0 before 7.0(1)SR4 and 7.0(2), unspecified 6.0 versions, and 5.0 before 5.0(2)SR3 allows remote attackers to read arbitrary files via a crafted bootstrap message to TCP port 6295.

Affected configurations

NVD
Node
ciscounified_contact_center_expressMatch5.0
OR
ciscounified_contact_center_expressMatch6.0
OR
ciscounified_contact_center_expressMatch7.0
Node
ciscocustomer_response_solutionMatch5.0
OR
ciscocustomer_response_solutionMatch6.0
OR
ciscocustomer_response_solutionMatch7.0
Node
ciscounified_ip_interactive_voice_responseMatch5.0
OR
ciscounified_ip_interactive_voice_responseMatch6.0
OR
ciscounified_ip_interactive_voice_responseMatch7.0

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

6.8 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

69.2%