Vulnslist

find the latest Cisco vulnerabilities

CVE-2013-3426

The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810.

SeverityMEDIUM
CVSS5.0
CWECWE-264
KEV
Published
Modified

Related Products

Product Advisory
Cisco RV Series Routers Cisco-SA-20130717-CVE-2013-3426
Cisco Nexus Dashboard Cisco-SA-20130717-CVE-2013-3426
Cisco Unified IP Phones 9900 Series Firmware Cisco-SA-20130717-CVE-2013-3426
Cisco IP phone Cisco-SA-20130717-CVE-2013-3426