CVE-2006-2166
Published May 4, 2006
Last updated 6 years ago
Overview
- Description
- Unspecified vulnerability in the HTTP management interface in Cisco Unity Express (CUE) 2.2(2) and earlier, when running on any CUE Advanced Integration Module (AIM) or Network Module (NM), allows remote authenticated attackers to reset the password for any user with an expired password.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 2.1
- Impact score
- 2.9
- Exploitability score
- 3.9
- Vector string
- AV:N/AC:H/Au:S/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:unity_express_software:1.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05328FC0-D20B-44AD-A72B-19D125553067" }, { "criteria": "cpe:2.3:a:cisco:unity_express_software:2.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "31397846-474A-46B3-8210-ADC20B93E4A9" }, { "criteria": "cpe:2.3:a:cisco:unity_express_software:2.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68CE1AB1-1745-4C19-B3AC-72A033D69F87" }, { "criteria": "cpe:2.3:h:cisco:unity_express:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7583D706-3702-4571-BD2C-527E5337F6E1" } ], "operator": "OR" } ] } ]