Arbitrary File Upload Vulnerability in Cisco Emergency Responder
CVE-2015-6407

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
13 December 2015

Summary

A vulnerability exists in Cisco Emergency Responder 10.5(3.10000.9) that allows a remote attacker to upload files to arbitrary locations on the server. This issue is triggered through a crafted parameter, potentially leading to unauthorized access and manipulation of the system. Protecting against this vulnerability requires immediate patching and monitoring of file upload functionalities to prevent exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.