Lucene search

K
cveCiscoCVE-2014-2102
HistoryFeb 27, 2014 - 1:55 a.m.

CVE-2014-2102

2014-02-2701:55:04
CWE-264
cisco
web.nvd.nist.gov
28
cisco
unified contact center express
unified ccx
cve-2014-2102
bug id cscum95575
information security
vulnerability

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

41.8%

Cisco Unified Contact Center Express (Unified CCX) does not properly restrict the content of the CCMConfig page, which allows remote authenticated users to obtain sensitive information by examining this content, aka Bug ID CSCum95575.

Affected configurations

Nvd
Node
ciscounified_contact_center_express_editor_softwareMatch-
VendorProductVersionCPE
ciscounified_contact_center_express_editor_software-cpe:2.3:a:cisco:unified_contact_center_express_editor_software:-:*:*:*:*:*:*:*

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

5.9

Confidence

Low

EPSS

0.001

Percentile

41.8%

Related for CVE-2014-2102