CVE-2016-6451
- EPSS 0.49%
- Veröffentlicht 03.11.2016 21:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple vulnerabilities in the web framework code of the Cisco Prime Collaboration Provisioning could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against the user of the web interface of the affected syst...
- EPSS 5.09%
- Veröffentlicht 02.07.2016 14:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cisco Prime Collaboration Provisioning 10.6 SP2 (aka 10.6.0.10602) mishandles LDAP authentication, which allows remote attackers to obtain administrator privileges via a crafted login attempt, aka Bug ID CSCuv37513.
CVE-2015-6329
- EPSS 0.3%
- Veröffentlicht 12.10.2015 10:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
SQL injection vulnerability in Cisco Prime Collaboration Provisioning 10.6 and 11.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCut64074.
- EPSS 0.36%
- Veröffentlicht 20.09.2015 01:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The web framework in Cisco Prime Collaboration Provisioning before 11.0 allows remote authenticated users to bypass intended access restrictions and create administrative accounts via a crafted URL, aka Bug ID CSCut64111.