// For flags

CVE-2014-0733

 

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Enterprise License Manager (ELM) component in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier does not properly enforce authentication requirements, which allows remote attackers to read ELM files via a direct request to a URL, aka Bug ID CSCum46494.

El componente Enterprise License Manager (ELM) en Cisco Unified Communications Manager (Unified CM) 10.0(1) y anteriores no fuerza debidamente los requisitos de autenticación, lo que permite a atacantes remotos leer archivos ELM a través de una solicitud directa hacia una URL, también conocido como Bug ID CSCum46494.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2014-01-02 CVE Reserved
  • 2014-02-20 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-287: Improper Authentication
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
<= 10.0\(1\)
Search vendor "Cisco" for product "Unified Communications Manager" and version " <= 10.0\(1\)"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
3.3\(5\)
Search vendor "Cisco" for product "Unified Communications Manager" and version "3.3\(5\)"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
3.3\(5\)sr1
Search vendor "Cisco" for product "Unified Communications Manager" and version "3.3\(5\)sr1"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
3.3\(5\)sr2a
Search vendor "Cisco" for product "Unified Communications Manager" and version "3.3\(5\)sr2a"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.1\(3\)
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.1\(3\)"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.1\(3\)sr1
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.1\(3\)sr1"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.1\(3\)sr2
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.1\(3\)sr2"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.1\(3\)sr3
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.1\(3\)sr3"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.1\(3\)sr4
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.1\(3\)sr4"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.1
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.1"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.2
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.2"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.3
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.3sr1
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3sr1"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.3sr2
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3sr2"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.2.3sr2b
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.2.3sr2b"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
4.3
Search vendor "Cisco" for product "Unified Communications Manager" and version "4.3"
-
Affected
Cisco
Search vendor "Cisco"
Unified Communications Manager
Search vendor "Cisco" for product "Unified Communications Manager"
10.0
Search vendor "Cisco" for product "Unified Communications Manager" and version "10.0"
-
Affected