4
CVSSv2

CVE-2017-6703

Published: 04/07/2017 Updated: 07/07/2017
CVSS v2 Base Score: 4 | Impact Score: 4.9 | Exploitability Score: 4.9
CVSS v3 Base Score: 5.9 | Impact Score: 4.2 | Exploitability Score: 1.6
VMScore: 356
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N

Vulnerability Summary

A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote malicious user to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco prime collaboration provisioning 11.2_base

cisco prime collaboration provisioning 12.1_base

cisco prime collaboration provisioning 11.6_base

cisco prime collaboration provisioning 11.5.0

Vendor Advisories

A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session The vulnerability is due to insufficient session management during user authentication An attacker could exploit this vulnerability by performing a session fixation attack agai ...