Unauthenticated User Account Creation Vulnerability in Cisco Unified Intelligence Center
CVE-2016-6426
7.5HIGH
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 5 October 2016
What is CVE-2016-6426?
The j_spring_security_switch_user function in Cisco Unified Intelligence Center (CUIC) versions 8.5.4 to 9.1(1) enables remote attackers to create user accounts by accessing unspecified web pages. This vulnerability is also associated with Unified Contact Center Express versions 10.0(1) through 11.0(1), raising concerns regarding unauthorized user access and the potential for security breaches.