Lucene search

K
cve[email protected]CVE-2012-0366
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-0366

2022-10-0316:15:40
CWE-264
web.nvd.nist.gov
24
cisco
unity connection
administrative password
remote authentication
help desk administrator role
cve-2012-0366
nvd

9 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

51.7%

Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Administrator role, aka Bug ID CSCtd45141.

Affected configurations

NVD
Node
ciscounity_connectionRange≀7.1\(3b\)su1
OR
ciscounity_connectionMatch1.1
OR
ciscounity_connectionMatch1.1\(1\)
OR
ciscounity_connectionMatch1.1\(1\)_es1
OR
ciscounity_connectionMatch1.1\(1\)_es12
OR
ciscounity_connectionMatch1.1\(1\)_sr1
OR
ciscounity_connectionMatch1.2
OR
ciscounity_connectionMatch1.2\(1\)
OR
ciscounity_connectionMatch1.2\(1\)_es65
OR
ciscounity_connectionMatch1.2\(1\)sr2
OR
ciscounity_connectionMatch2.0
OR
ciscounity_connectionMatch2.0\(1\)
OR
ciscounity_connectionMatch2.1
OR
ciscounity_connectionMatch2.1\(1\)
OR
ciscounity_connectionMatch2.1\(2\)
OR
ciscounity_connectionMatch2.1\(3\)
OR
ciscounity_connectionMatch2.1\(3b\)su1
OR
ciscounity_connectionMatch2.1\(4\)
OR
ciscounity_connectionMatch2.1\(4\)su1
OR
ciscounity_connectionMatch2.1\(4a\)
OR
ciscounity_connectionMatch2.1\(4a\)su2
OR
ciscounity_connectionMatch2.1\(5\)
OR
ciscounity_connectionMatch2.1\(5\)su1
OR
ciscounity_connectionMatch2.1\(5\)su2
OR
ciscounity_connectionMatch2.1\(5\)su3
OR
ciscounity_connectionMatch6.1\(3b\)su1
OR
ciscounity_connectionMatch7.0
OR
ciscounity_connectionMatch7.0\(2\)
OR
ciscounity_connectionMatch7.0\(2a\)su2
OR
ciscounity_connectionMatch7.0\(2a\)su3
OR
ciscounity_connectionMatch7.1
OR
ciscounity_connectionMatch7.1\(2\)
OR
ciscounity_connectionMatch7.1\(2a\)
OR
ciscounity_connectionMatch7.1\(2a\)su1
OR
ciscounity_connectionMatch7.1\(2b\)
OR
ciscounity_connectionMatch7.1\(2b\)su1
OR
ciscounity_connectionMatch7.1\(3\)
OR
ciscounity_connectionMatch7.1\(3a\)
OR
ciscounity_connectionMatch7.1\(3a\)su1
OR
ciscounity_connectionMatch7.1\(3a\)su1a
OR
ciscounity_connectionMatch7.1\(3b\)
OR
ciscounity_connectionMatch7.1\(5\)
OR
ciscounity_connectionMatch7.1\(5\)su1a
OR
ciscounity_connectionMatch7.1\(5a\)
OR
ciscounity_connectionMatch7.1\(5b\)
OR
ciscounity_connectionMatch7.1\(5b\)su2
OR
ciscounity_connectionMatch7.1\(5b\)su3
OR
ciscounity_connectionMatch7.1\(5b\)su4

9 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

51.7%