Home arrow Vendor Advisories arrow Cisco arrow Cisco Unity Express Expired Password Reset Privilege Escalation
Friday, 10 February 2012
 
spacer.png, 0 kB
spacer.png, 0 kB
spacer.png, 0 kB
Cisco Unity Express Expired Password Reset Privilege Escalation
Tuesday, 02 May 2006
Cisco Unity Express (CUE) contains a vulnerability that might allow an authenticated user to change the password for another user by using the HTTP management interface, if the password for the user being modified is marked as expired. This can result in a privilege escalation attack and complete administrative control of a CUE module, if the password being changed belongs to an administrator.
 
spacer.png, 0 kB
     

© 2012 Intellect Information Technology Pty Ltd, Melbourne, Australia.

This page was loaded in 0.069 seconds.