Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-0702

Опубликовано: 21 апр. 2015
Источник: nvd
CVSS2: 9
EPSS Низкий

Описание

Unrestricted file upload vulnerability in the Custom Prompts upload implementation in Cisco Unified MeetingPlace 8.6(1.9) allows remote authenticated users to execute arbitrary code by using the languageShortName parameter to upload a file that provides shell access, aka Bug ID CSCus95712.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cisco:unified_meetingplace:8.6\(1.9\):*:*:*:*:*:*:*

EPSS

Процентиль: 79%
0.01267
Низкий

9 Critical

CVSS2

Дефекты

CWE-20

Связанные уязвимости

github
больше 3 лет назад

Unrestricted file upload vulnerability in the Custom Prompts upload implementation in Cisco Unified MeetingPlace 8.6(1.9) allows remote authenticated users to execute arbitrary code by using the languageShortName parameter to upload a file that provides shell access, aka Bug ID CSCus95712.

EPSS

Процентиль: 79%
0.01267
Низкий

9 Critical

CVSS2

Дефекты

CWE-20