Cisco Unified Communications Manager(CUCM,Unified CM,CallManager)是美国思科(Cisco)公司的一款统一通信系统中的呼叫处理组件。该组件提供了一种可扩展、可分布和高可用的企业IP电话呼叫处理解决方案。SQL database interface是其中的一个数据库管理界面。 CUCM中的SQL数据库界面存在SQL注入漏洞,该漏洞源于程序没有充分的检测SQL查询中用户提交的输入。远程攻击者可通过发送特制的URL利用该漏洞确定数据库中的值。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Cisco Unified Communications Manager | Cisco Unified Communications Manager | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-16844 | procmail 缓冲区错误漏洞 | |
| CVE-2017-0866 | Google NVIDIA Tegra X1 Direct rendering infrastructur 权限许可和访问控制问题漏洞 | |
| CVE-2017-16867 | Amazon Key 安全漏洞 | |
| CVE-2017-14028 | Moxa NPort 5110、5130和5150 安全漏洞 | |
| CVE-2017-16843 | Vonage VDV-23 跨站脚本漏洞 | |
| CVE-2017-16719 | Moxa NPort 5110、5130和5150 安全漏洞 | |
| CVE-2017-16715 | Moxa NPort 5110、5130和5150 信息泄露漏洞 | |
| CVE-2017-16866 | dayrui FineCms 跨站请求伪造漏洞 | |
| CVE-2017-16847 | ZOHO ManageEngine Applications Manager SQL注入漏洞 | |
| CVE-2017-16846 | ZOHO ManageEngine Applications Manager SQL注入漏洞 | |
| CVE-2017-16848 | ZOHO ManageEngine Applications Manager SQL注入漏洞 | |
| CVE-2017-16777 | HashiCorp Vagrant VMware Fusion插件安全漏洞 | |
| CVE-2017-16560 | Western Digital SanDisk Secure Access 安全漏洞 | |
| CVE-2017-15864 | Open Ticket Request System Agent Frontend 安全漏洞 | |
| CVE-2017-12350 | Cisco Umbrella Insights Virtual Appliances 安全漏洞 | |
| CVE-2017-12337 | 多款Cisco产品授权问题漏洞 | |
| CVE-2017-12323 | Cisco Registered Envelope Service 安全漏洞 | |
| CVE-2017-12322 | Cisco Registered Envelope Service 跨站脚本漏洞 | |
| CVE-2017-12321 | Cisco Registered Envelope Service 跨站脚本漏洞 | |
| CVE-2017-12320 | Cisco Registered Envelope Service 跨站脚本漏洞 |
Showing top 20 of 52 CVEs. View all on vendor page → →
No comments yet