CVE-2015-6299 Information

Description

SQL injection vulnerability in the web interface in Cisco Unity Connection 9.1(1.2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted POST request aka Bug ID CSCuv63824.

Reference

http://tools.cisco.com/security/center/viewAlert.x?alertId=41074 http://www.securitytracker.com/id/1033622

Share on: