5
CVE-2010-4305
- EPSS 0.26%
- Published 22.11.2010 20:00:04
- Last modified 11.04.2025 00:51:21
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Cisco Unified Videoconferencing (UVC) System 3545, 5110, 5115, and 5230; Unified Videoconferencing 3527 Primary Rate Interface (PRI) Gateway; Unified Videoconferencing 3522 Basic Rate Interfaces (BRI) Gateway; and Unified Videoconferencing 3515 Multipoint Control Unit (MCU) improperly use cookies for web-interface credentials, which allows remote attackers to obtain sensitive information by reading a (1) cleartext or (2) base64-encoded cleartext cookie, aka Bug ID CSCti54052.
Data is provided by the National Vulnerability Database (NVD)
Cisco ≫ Unified Videoconferencing System 5110 Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 5115 Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 3515 Multipoint Control Unit Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 3522 Basic Rate Interface Gateway Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 3527 Primary Rate Interface Gateway Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 3545 Firmware Version7.0.1.13.3
Cisco ≫ Unified Videoconferencing System 5230 Firmware Version7.0.1.13.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.26% | 0.464 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|