CVE-2017-6722

A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of Cisco Unified Contact Center Express (UCCx) could allow an unauthenticated, remote attacker to masquerade as a legitimate user, aka a Clear Text Authentication Vulnerability. More Information: CSCuw86638. Known Affected Releases: 10.6(1). Known Fixed Releases: 11.5(1.10000.61).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cisco:unified_contact_center_express:11.5\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_contact_center_express:11.5.1es01:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_contact_center_express:11.5.1su1:*:*:*:*:*:*:*

History

21 Nov 2024, 03:30

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/99201 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/99201 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1038749 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1038749 - Third Party Advisory, VDB Entry
References () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170621-ucce - Vendor Advisory () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170621-ucce - Vendor Advisory

Information

Published : 2017-07-04 00:29

Updated : 2024-11-21 03:30


NVD link : CVE-2017-6722

Mitre link : CVE-2017-6722

CVE.ORG link : CVE-2017-6722


JSON object : View

Products Affected

cisco

  • unified_contact_center_express
CWE
CWE-287

Improper Authentication