Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack against a user of the web interface of the affected software. More Information: CSCvb70021. Known Affected Releases: 11.5(1.11007.2).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Unified Communications Manager 跨站请求伪造漏洞
Vulnerability Description
Cisco Unified Communications Manager(CUCM,Unified CM,CallManager)是美国思科(Cisco)公司的一款统一通信系统中的呼叫处理组件。该组件提供了一种可扩展、可分布和高可用的企业IP电话呼叫处理解决方案。 CUCM中的Web框架存在跨站请求伪造漏洞,该漏洞源于程序没有充分的执行CSRF保护。远程攻击者可通过诱使用户点击恶意链接利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A