The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2014-08-12T23:00:00
Updated: 2024-08-06T10:43:05.141Z
Reserved: 2014-05-07T00:00:00
Link: CVE-2014-3338
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-08-12T23:55:03.907
Modified: 2024-11-21T02:07:53.690
Link: CVE-2014-3338
Redhat
No data.