5.8
CVSSv2

CVE-2017-6670

Published: 13/06/2017 Updated: 08/07/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

A vulnerability in the web-based GUI of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote malicious user to redirect a user to a malicious web page, aka an Open Redirect issue. More Information: CSCvc54813. Known Affected Releases: 8.1(7)ER1.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified communications domain manager 8.1\\(7\\)er1

Vendor Advisories

A vulnerability in the web-based GUI of Cisco Unified Communications Domain Manager could allow an unauthenticated, remote attacker to redirect a user to a malicious web page The vulnerability is due to improper input validation of HTTP request parameters by the affected software An attacker could exploit this vulnerability by submitting a craft ...