Vulnslist

find the latest Cisco vulnerabilities

CVE-2014-3333

The server in Cisco Unity Connection 9.1(1) and 9.1(2) allows remote authenticated users to obtain privileged access by conducting an "HTTP Intercept" attack and leveraging the ability to read files within the context of the web-server user account, aka Bug ID CSCup41014.

SeverityHIGH
CVSS9.0
CWECWE-264
KEV
Published
Modified

Related Products

Product Advisory
Cisco RV Series Routers Cisco-SA-20140807-CVE-2014-3333
Cisco Nexus Dashboard Cisco-SA-20140807-CVE-2014-3333
Cisco Unity Connection Cisco-SA-20140807-CVE-2014-3333
Cisco Unity Cisco-SA-20140807-CVE-2014-3333