{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T11:04:44Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"Cisco-SA-20141208-CVE-2014-8009","slug":"cisco-sa-20141208-cve-2014-8009","vendor":"Cisco","title":"Cisco Unified Computing System Manager Information Disclosure Vulnerability","summary":"A vulnerability in the system logs of the Cisco Unified Computing System Manager could allow an unauthenticated, remote attacker to view sensitive system information. The vulnerability is due to the inclusion of sensitive information in certain log files. An attacker could exploit this vulnerability by viewing the sensitive information stored in the logs. Cisco has confirmed the vulnerability and released software updates. To exploit the vulnerability, the attacker may need access to trusted or internal networks to access system log files. This access requirement could limit the likelihood of a successful exploit.","severity":"Medium","published_at":"2014-12-08T15:19:07Z","updated_at":"2014-12-08T15:19:07Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20141208-CVE-2014-8009","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/Cisco-SA-20141208-CVE-2014-8009/csaf/Cisco-SA-20141208-CVE-2014-8009.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":1,"public_evidence_count":1,"kev_count":0,"highest_epss":0.01173},"cves":[{"id":"CVE-2014-8009","kev":false,"epss":{"score":0.01173,"percentile":0.64026,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"}}],"public_evidence":[{"product":{"name":"Cisco Unified Computing System (Management Software)","slug":"cisco-unified-computing-system-management-software","vendor":"Cisco"},"cve":{"id":"CVE-2014-8009"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T05:15:51Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco Unified Computing System (Management Software)","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"epss":{"score":0.01173,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"},"published_at":"2014-12-08T15:19:07Z","updated_at":"2014-12-08T15:19:07Z","advisory_updated_at":"2014-12-08T15:19:07Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20141208-CVE-2014-8009","row_display_order":1}]}