Vulnslist

find the latest Cisco vulnerabilities

CVE-2015-4221

Cisco Unified Communications Manager IM and Presence Service 9.1(1) does not properly restrict access to encrypted passwords, which allows remote attackers to determine cleartext passwords, and consequently execute arbitrary commands, by visiting an unspecified web page and then conducting a decryption attack, aka Bug ID CSCuq46194.

SeverityMEDIUM
CVSS4.0
CWECWE-264
KEV
Published
Modified

Related Products

Product Advisory
Cisco RV Series Routers Cisco-SA-20150624-CVE-2015-4221
Cisco Nexus Dashboard Cisco-SA-20150624-CVE-2015-4221
Cisco Unified Communications Manager IM and Presence Service Cisco-SA-20150624-CVE-2015-4221
Cisco Unified Communications Manager Cisco-SA-20150624-CVE-2015-4221