SQL Injection Vulnerability in Cisco Unified Communications Manager
CVE-2016-1317
4.3MEDIUM
What is CVE-2016-1317?
A vulnerability exists in Cisco Unified Communications Manager, where remote authenticated users can exploit the system to access sensitive database information. By making direct requests to specific URLs, attackers have the potential to obtain critical data such as table names and entity names, leading to unauthorized information disclosure.