Open Redirect Vulnerability in Cisco Unified Communications Domain Manager
CVE-2014-3320

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
18 July 2014

Summary

Multiple open redirect vulnerabilities exist in the administrative web interface of Cisco Unified Communications Domain Manager, releasing versions 8.1(.4) and earlier. These flaws enable remote attackers to redirect users to arbitrary external websites, potentially facilitating phishing attacks through the use of specially crafted URLs targeting unspecified scripts. Organizations utilizing this service should evaluate their systems for potential exposure and consider implementing the recommended security measures.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.