5.8
CVSSv2

CVE-2014-3320

Published: 18/07/2014 Updated: 12/01/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Multiple open redirect vulnerabilities in the admin web interface in the web framework in Cisco Unified Communications Domain Manager (CDM) 8.1(.4) and previous versions allow remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via crafted URLs for unspecified scripts, aka Bug ID CSCuo48835.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified communications domain manager 8.1

cisco unified communications domain manager 8.1\\(.3\\)

cisco unified communications domain manager 8.1\\(.1\\)

cisco unified communications domain manager

cisco unified communications domain manager 8.1\\(.2\\)

Vendor Advisories

A vulnerability in the web framework of Cisco Unified Communications Domain Manager (Cisco Unified CDM) Application Software could allow an unauthenticated, remote attacker to redirect a user to a possible malicious website The vulnerability is due to insufficient validation of user input when invoking some scripts via the admin web interface A ...