CVE-2013-3438
Cisco Unified MeetingPlace Web Conferencing - Unauthenticated Access Restriction Bypass via Crafted Parameters
Title source: llmDescription
The web framework in the server in Cisco Unified MeetingPlace Web Conferencing allows remote attackers to bypass intended access restrictions and read unspecified web pages via crafted parameters, aka Bug ID CSCuh86385.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/95583
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3438
Vendor Advisory x_refsource_confirm
http://tools.cisco.com/security/center/viewAlert.x?alertId=30186
Scores
EPSS
0.0140
EPSS Percentile
69.6%
Details
CWE
CWE-264
Status
published
Products (1)
cisco/unified_meetingplace_web_conferencing
Published
Jul 24, 2013
Tracked Since
Feb 18, 2026