CVE-2013-1240

medium Cisco
CVSS v3 Base Score
4.6
AV:L/AC:L/Au:S/C:C/I:N/A:N
EPSS Score
0.1%
Exploitation probability in 30 days
Top 81% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Confidentiality
C
Integrity
None
Availability
None
Published: May 4, 2013 (4758 days ago)
Last Modified: April 29, 2026
Vendor: Cisco
Source: NVD

Description

The command-line interface in Cisco Unified Communications Manager (CUCM) does not properly validate input, which allows local users to read arbitrary files via unspecified vectors, aka Bug ID CSCue25770.

CWE

CWE-20

Affected Products

cisco unified communications manager

References