A vulnerability in the Java Remote Method Invocation (RMI) interface of Cisco Unified Customer Voice Portal (CVP) could allow an unauthenticated, remote attacker to access sensitive information on an affected device. The vulnerability exists because certain RMI listeners are not properly authenticated. An attacker could exploit this vulnerability by sending a crafted request to the affected listener. A successful exploit could allow the attacker to access sensitive information on an affected device.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2020-07-02T04:20:26.399432Z

Updated: 2024-09-16T19:52:02.374Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2020-3402

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-07-02T05:15:11.697

Modified: 2020-07-09T16:55:14.390

Link: CVE-2020-3402

cve-icon Redhat

No data.