CVE-2013-1222
- EPSS 0.3%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly configure Tomcat components, which allows remote attackers to launch arbitrary custom web applications via a crafted (1) HTTP...
CVE-2013-1223
- EPSS 0.38%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
The log viewer in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly validate an unspecified parameter, which allows remote attackers to read arbitrary files via a crafted (1) HTTP or (2) HTTPS request, aka Bug ID...
CVE-2013-1224
- EPSS 0.29%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in the Resource Manager in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to overwrite arbitrary files via a crafted (1) HTTP or (2) HTTPS request that triggers incorrec...
CVE-2013-1225
- EPSS 0.57%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to read arbitrary files via a Resource Manager (1) HTTP or (2) HTTPS request containing an external entity declaration in conjunction with an entity referen...
- EPSS 1.06%
- Veröffentlicht 22.05.2008 13:09:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Cisco Unified Customer Voice Portal (CVP) 4.0.x before 4.0(2)_ES14, 4.1.x before 4.1(1)_ES11, and 7.x before 7.0(1) allows remote authenticated users with administrator role privileges to create, modify, or delete a super...