Release date:
Updated on:
Affected Systems:
Cisco uniied Communications Manager
Description:
--------------------------------------------------------------------------------
Bugtraq id: 65514
CVE (CAN) ID: CVE-2014-0726
Cisco uniied Communications Manager is an enterprise-level IP call handling system.
The IPMA interface of Cisco Unified Communications Manager has a security vulnerability. unauthenticated remote attackers submit and execute malicious SQL queries. This vulnerability affects system integrity.
<* Source: Cisco
Link: http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0726? Vs_f = Cisco % 20 Securi
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Cisco
-----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.cisco.com/go/psirt