← All CVEs

CVE-2013-5528

medium · 4

A public exploit / detection template exists

Weaponised detection is publicly available, which meaningfully raises real-world risk regardless of CVSS. nuclei-templates

Directory traversal vulnerability in the Tomcat administrative web interface in Cisco Unified Communications Manager allows remote authenticated users to read arbitrary files via directory traversal sequences in an unspecified input string, aka Bug ID CSCui78815.

4
CVSS
23.3%
EPSS (exploit prob.)
98th
EPSS percentile
2013-10-11
Published

AV:N/AC:L/Au:S/C:P/I:N/A:N

Weaknesses

CWE-22

Affected products

VendorProductAffected versions
ciscounified_communications_managerall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-5528