5
CVSSv2

CVE-2014-0722

Published: 13/02/2014 Updated: 13/02/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The log4jinit web application in Cisco Unified Communications Manager (UCM) does not properly validate authentication, which allows remote malicious users to cause a denial of service (performance degradation) via unspecified use of this application, aka Bug ID CSCum05347.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified communications manager

Vendor Advisories

A vulnerability in the log4jinit web application of Cisco Unified Communications Manager (UCM) could allow an unauthenticated, remote attacker to access the log4jinit web application The vulnerability is due to insufficient authentication checking when accessing the log4jinit web application An attacker could exploit this vulnerability by acces ...