CVE-2013-1222
- EPSS 0.31%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Tomcat Web Management feature in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly configure Tomcat components, which allows remote attackers to launch arbitrary custom web applications via a crafted (1) HTTP...
CVE-2013-1223
- EPSS 0.38%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 29.04.2026 01:13:23
The log viewer in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 does not properly validate an unspecified parameter, which allows remote attackers to read arbitrary files via a crafted (1) HTTP or (2) HTTPS request, aka Bug ID...
CVE-2013-1224
- EPSS 0.31%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 29.04.2026 01:13:23
Directory traversal vulnerability in the Resource Manager in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to overwrite arbitrary files via a crafted (1) HTTP or (2) HTTPS request that triggers incorrec...
CVE-2013-1225
- EPSS 0.57%
- Veröffentlicht 09.05.2013 12:31:19
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to read arbitrary files via a Resource Manager (1) HTTP or (2) HTTPS request containing an external entity declaration in conjunction with an entity referen...
- EPSS 1.06%
- Veröffentlicht 22.05.2008 13:09:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Unspecified vulnerability in Cisco Unified Customer Voice Portal (CVP) 4.0.x before 4.0(2)_ES14, 4.1.x before 4.1(1)_ES11, and 7.x before 7.0(1) allows remote authenticated users with administrator role privileges to create, modify, or delete a super...