The web framework in Cisco Prime Central for Hosted Collaboration Solution (HCS) Assurance prior to 9.1.1 does not properly determine the existence of an authenticated session, which allows remote malicious users to discover usernames and passwords via an HTTP request, aka Bug ID CSCud32600.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco prime central for hosted collaboration solution assurance 9.0 |
||
cisco prime central for hosted collaboration solution assurance 1.0.1 |
||
cisco prime central for hosted collaboration solution assurance |
||
cisco prime central for hosted collaboration solution assurance 8.6 |
||
cisco prime central for hosted collaboration solution assurance 1.0 |