Cisco Unified Contact Center Express (Unified CCX) does not properly restrict the content of the CCMConfig page, which allows remote authenticated users to obtain sensitive information by examining this content, aka Bug ID CSCum95575.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-2102 | Vendor Advisory |
http://www.securitytracker.com/id/1029842 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2014-02-27 01:55
Updated : 2015-07-29 16:20
NVD link : CVE-2014-2102
Mitre link : CVE-2014-2102
CVE.ORG link : CVE-2014-2102
JSON object : View
Products Affected
cisco
- unified_contact_center_express_editor_software
CWE
CWE-264
Permissions, Privileges, and Access Controls