Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
BID:68482
Info
Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
| Bugtraq ID: | 68482 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-3318 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 09 2014 12:00AM |
| Updated: | Jul 14 2014 12:07AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
Cisco Unified Communications Manager is prone to a directory-traversal vulnerability.
Exploiting this issue may allow an attacker to upload arbitrary files to arbitrary locations that could aid in further attacks.
This issue is being tracked by Cisco Bug ID CSCup76318.
Cisco Unified Communications Manager is prone to a directory-traversal vulnerability.
Exploiting this issue may allow an attacker to upload arbitrary files to arbitrary locations that could aid in further attacks.
This issue is being tracked by Cisco Bug ID CSCup76318.
Exploit / POC
Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.
Solution / Fix
Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Cisco Unified Communications Manager CVE-2014-3318 Directory Traversal Vulnerability
References:
References:
- Cisco Homepage (Cisco )