Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jx4f-2jgh-g5h9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.

Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 10 лет назад

Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-200