Cross-site request forgery (CSRF) vulnerability in the Unified Serviceability component in Cisco Unified Communications Manager (CUCM) allows remote attackers to hijack the authentication of arbitrary users for requests that perform Unified Serviceability actions, aka Bug ID CSCuh10298.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3397 | Vendor Advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3397 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2013-06-26 21:55
Updated : 2025-04-11 00:51
NVD link : CVE-2013-3397
Mitre link : CVE-2013-3397
CVE.ORG link : CVE-2013-3397
JSON object : View
Products Affected
cisco
- unified_communications_manager
CWE
CWE-352
Cross-Site Request Forgery (CSRF)