CVE-2015-6408

Description

Cross-site request forgery (CSRF) vulnerability in Cisco Unity Connection 11.5(0.98) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCux24578.

Risk Information

Base Score
7.3
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
Exploitation Probability
0.126

Associated Vulnerability

VulnerabilityOS Platform
Cisco Unity Connection Cross-Site Request Forgery Vulnerability For Cisco Unity ConnectionNCM
Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-6408)NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1706048Security Update for Cisco Unity Connection 12.0(0.97000.184)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234