CVE-2014-3283

Published May 29, 2014

Last updated 8 years ago

Overview

Description
Open redirect vulnerability in Self-Care Client Portal applications in the web framework in VOSS in Cisco Unified Communications Domain Manager (CDM) 9.0(.1) and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL, aka Bug ID CSCun79731.
Source
ykramarz@cisco.com
NVD status
Analyzed

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
5.8
Impact score
4.9
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:P/I:P/A:N

Weaknesses

nvd@nist.gov
CWE-20

Evaluator

Comment
Per: http://cwe.mitre.org/data/definitions/601.html "CWE-601: URL Redirection to Untrusted Site ('Open Redirect')"
Impact
-
Solution
-

Configurations