Описание
A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:cisco:prime_collaboration_provisioning:11.2_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:prime_collaboration_provisioning:11.5.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:prime_collaboration_provisioning:11.6_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:prime_collaboration_provisioning:12.1_base:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00977
Низкий
5.9 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 5.9
github
больше 3 лет назад
A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.
EPSS
Процентиль: 76%
0.00977
Низкий
5.9 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-287