CVE-2011-4232

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
03/05/2012
Last modified:
30/05/2012

Description

The web server in Cisco Unified MeetingPlace 6.1 and 8.5 produces different responses for directory queries depending on whether the directory exists, which allows remote attackers to enumerate directory names via a series of queries, aka Bug ID CSCtt94070.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:unified_meetingplace:6.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_meetingplace:8.5:*:*:*:*:*:*:*