CVE-2015-0754

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
29/05/2015
Last modified:
04/01/2017

Description

Cisco Finesse 10.5(1) allows remote authenticated users to obtain sensitive information or cause a denial of service (CPU and memory consumption) via a crafted XML document, aka Bug ID CSCut95810.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:finesse:10.5\(1\)_base:*:*:*:*:*:*:*