Inconsistent Error Messages in Cisco Unified Communications Domain Manager (CSCut67891)

Inconsistent Error Messages in Cisco Unified Communications Domain Manager (CSCut67891)

CVE-2015-6352 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

Cisco Unified Communications Domain Manager before 10.6(1) provides different error messages for pathname access attempts depending on whether the pathname exists, which allows remote attackers to map a filesystem via a series of requests, aka Bug ID CSCut67891.

Learn more about our Web Application Penetration Testing UK.