Lucene search

K
nvd[email protected]NVD:CVE-2006-2166
HistoryMay 04, 2006 - 12:38 p.m.

CVE-2006-2166

2006-05-0412:38:00
web.nvd.nist.gov
3

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.005

Percentile

75.7%

Unspecified vulnerability in the HTTP management interface in Cisco Unity Express (CUE) 2.2(2) and earlier, when running on any CUE Advanced Integration Module (AIM) or Network Module (NM), allows remote authenticated attackers to reset the password for any user with an expired password.

Affected configurations

Nvd
Node
ciscounity_express_softwareMatch1.1.1
OR
ciscounity_express_softwareMatch2.1.1
OR
ciscounity_express_softwareMatch2.2.2
OR
ciscounity_express
VendorProductVersionCPE
ciscounity_express_software1.1.1cpe:2.3:a:cisco:unity_express_software:1.1.1:*:*:*:*:*:*:*
ciscounity_express_software2.1.1cpe:2.3:a:cisco:unity_express_software:2.1.1:*:*:*:*:*:*:*
ciscounity_express_software2.2.2cpe:2.3:a:cisco:unity_express_software:2.2.2:*:*:*:*:*:*:*
ciscounity_express*cpe:2.3:h:cisco:unity_express:*:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

AI Score

6.5

Confidence

Low

EPSS

0.005

Percentile

75.7%

Related for NVD:CVE-2006-2166