Vulnerabilities > CVE-2010-0140 - Multiple vulnerability in Cisco Unified MeetingPlace

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
cisco
critical

Summary

Multiple unspecified vulnerabilities in the web server in Cisco Unified MeetingPlace 7 before 7.0(2.3) hotfix 5F, 6 before 6.0.639.3, and possibly 5 allow remote attackers to create (1) user or (2) administrator accounts via a crafted URL in a request to the internal interface, aka Bug IDs CSCtc59231 and CSCtd40661. Per: http://www.cisco.com/en/US/products/products_security_advisory09186a0080b1490b.shtml Affected Products Vulnerable Products Cisco Unified MeetingPlace versions 5, 6, and 7 are each affected by at least one of the vulnerabilities described in this document.

Seebug

bulletinFamilyexploit
descriptionNo description provided by source.
idSSV:19027
last seen2017-11-19
modified2010-01-29
published2010-01-29
reporterRoot
sourcehttps://www.seebug.org/vuldb/ssvid-19027
titleMultiple Vulnerabilities in Cisco Unified MeetingPlace