CVE-2015-6404 Information

Description

Cisco Hosted Collaboration Mediation Fulfillment 10.6(3) does not use RBAC which allows remote authenticated users to obtain sensitive credential information by leveraging admin access and making SOAP API requests aka Bug ID CSCuw84374.

Reference

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151210-hcm http://www.securityfocus.com/bid/78874

Share on: