7.8
CVSSv2

CVE-2010-1571

Published: 10/06/2010 Updated: 17/08/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in the bootstrap service in Cisco Unified Contact Center Express (UCCX) 7.0 prior to 7.0(1)SR4 and 7.0(2), unspecified 6.0 versions, and 5.0 prior to 5.0(2)SR3 allows remote malicious users to read arbitrary files via a crafted bootstrap message to TCP port 6295.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified contact center express 7.0

cisco unified contact center express 6.0

cisco unified contact center express 5.0

cisco customer response solution 6.0

cisco customer response solution 7.0

cisco customer response solution 5.0

cisco unified ip interactive voice response 5.0

cisco unified ip interactive voice response 6.0

cisco unified ip interactive voice response 7.0

Vendor Advisories

Cisco Unified Contact Center Express (UCCX or Unified CCX) contains a denial of service (DoS) vulnerability and a directory traversal vulnerability These vulnerabilities are independent of each other Exploitation of these vulnerabilities could result in a DoS condition or an information disclosure Cisco has released software updates ...