4.3
CVSSv2

CVE-2014-2117

Published: 04/04/2014 Updated: 16/09/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple open redirect vulnerabilities in Cisco Emergency Responder (ER) 8.6 and previous versions allow remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via unspecified parameters, aka Bug ID CSCun37909.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco emergency responder

Vendor Advisories

A vulnerability in the web interface of Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a web page open redirection attack against a user browser of the Cisco Emergency Responder The vulnerability is due to insufficient input validation of several parameters An attacker could exploit this vulnerability by con ...