4

CVE-2013-1139

The nsAPI interface in Cisco Cloud Portal 9.1 SP1 and SP2, and 9.3 through 9.3.2, does not properly check privileges, which allows remote authenticated users to obtain sensitive information via a crafted URL, aka Bug ID CSCud81134.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Cloud Portal Version 9.1 Update sp1
Cisco ≫ Cloud Portal Version 9.1 Update sp2
Cisco ≫ Cloud Portal Version 9.3
Cisco ≫ Cloud Portal Version 9.3.1
Cisco ≫ Cloud Portal Version 9.3.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.94% 0.562
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1139
Vendor Advisory
http://tools.cisco.com/security/center/viewAlert.x?alertId=28387
Vendor Advisory