漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
A vulnerability in the Operations, Administration, Maintenance, and Provisioning (OAMP) credential reset functionality for Cisco Unified Customer Voice Portal (CVP) could allow an authenticated, remote attacker to gain elevated privileges. The vulnerability is due to a lack of proper input validation. An attacker could exploit this vulnerability by authenticating to the OAMP and sending a crafted HTTP request. A successful exploit could allow the attacker to gain administrator privileges. The attacker must successfully authenticate to the system to exploit this vulnerability. This vulnerability affects Cisco Unified Customer Voice Portal (CVP) running software release 10.5, 11.0, or 11.5. Cisco Bug IDs: CSCve92752.
漏洞信息
N/A
漏洞
权限、特权和访问控制
漏洞
Cisco Unified Customer Voice Portal 权限许可和访问控制漏洞
漏洞信息
Cisco Unified Customer Voice Portal(CVP)是美国思科(Cisco)公司的一套用于提供语音和视频自助服务的统一通信系统。 Cisco Unified CVP 10.5版本,11.0版本和11.5版本中的Operations, Administration, Maintenance, and Provisioning(OAMP)证书重置功能存在提权漏洞,该漏洞源于程序没有充分的执行输入验证。远程攻击者可经过身份验证后,发送特制的HTTP请求利用该漏洞获取管理员权限。
漏洞信息
N/A
漏洞
N/A