CVE-2017-6668

Vulnerabilities in the web-based GUI of Cisco Unified Communications Domain Manager (CUCDM) could allow an authenticated, remote attacker to impact the confidentiality of the system by executing arbitrary SQL queries, aka SQL Injection. More Information: CSCvc52784 CSCvc97648. Known Affected Releases: 8.1(7)ER1.

SeverityMEDIUM
CVSS4.9
EPSS0.20% EPSS low
CWECWE-89
KEV
Published
Modified

Public Affected Products

Product Advisory Evidence
Cisco Unified Communications Domain Manager cisco-sa-20170607-cucm2 Cisco CSAF ยท structured affected