Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC, which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests, aka Bug ID CSCuw84374.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2015-12-15T02:00:00
Updated: 2024-08-06T07:22:21.555Z
Reserved: 2015-08-17T00:00:00
Link: CVE-2015-6404
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-12-15T05:59:05.777
Modified: 2016-11-28T19:39:01.797
Link: CVE-2015-6404
Redhat
No data.