Unauthorized Access Vulnerability in Cisco Unity Products
CVE-2004-1322

Currently unrated

Key Information:

Vendor

Cisco

Vendor
CVE Published:
15 December 2004

What is CVE-2004-1322?

Cisco Unity versions 2.x, 3.x, and 4.x, when integrated with Microsoft Exchange, contain hard-coded usernames and passwords. This security flaw enables remote attackers to gain unauthorized access to the system, allowing them to modify configuration settings and potentially intercept both incoming and outgoing emails, thereby compromising sensitive information.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.