CVE-2015-0758

The web-based user interface in Cisco Unified MeetingPlace 8.6(1.9) allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue, aka Bug ID CSCus97452.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:unified_meetingplace:8.6\(1.9\):*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-05-30 14:59

Updated : 2024-02-04 18:53


NVD link : CVE-2015-0758

Mitre link : CVE-2015-0758

CVE.ORG link : CVE-2015-0758


JSON object : View

Products Affected

cisco

  • unified_meetingplace
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor