CVE-2014-3349

Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) does not validate file types during the handling of file submission, which allows remote authenticated users to upload arbitrary files via a crafted request, aka Bug ID CSCuh87410.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:cloud_portal:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:07

Type Values Removed Values Added
References () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3349 - Vendor Advisory () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3349 - Vendor Advisory
References () http://www.securityfocus.com/bid/69455 - () http://www.securityfocus.com/bid/69455 -
References () http://www.securitytracker.com/id/1030783 - () http://www.securitytracker.com/id/1030783 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/95586 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/95586 -

Information

Published : 2014-08-29 09:55

Updated : 2024-11-21 02:07


NVD link : CVE-2014-3349

Mitre link : CVE-2014-3349

CVE.ORG link : CVE-2014-3349


JSON object : View

Products Affected

cisco

  • cloud_portal
CWE
CWE-20

Improper Input Validation