CVE-2015-4298

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
19/08/2015
Last modified:
12/04/2025

Description

Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs authorization, which allows remote authenticated users to read or write to stored data via unspecified vectors, aka Bug ID CSCuo89056.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:unified_web_and_e-mail_interaction_manager:9.0\(2\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_web_and_e-mail_interaction_manager:11.0\(1\):*:*:*:*:*:*:*