CVE-2014-0741

medium Cisco
CVSS v3 Base Score
6.2
AV:L/AC:L/Au:S/C:C/I:C/A:N
EPSS Score
0.0%
Exploitation probability in 30 days
Top 89% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Confidentiality
C
Integrity
C
Availability
None
Published: February 27, 2014 (4459 days ago)
Last Modified: April 29, 2026
Vendor: Cisco
Source: NVD

Description

The certificate-import feature in the Certificate Authority Proxy Function (CAPF) CLI implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows local users to read or modify arbitrary files via a crafted command, aka Bug ID CSCum95461.

CWE

CWE-310

Affected Products

cisco unified communications manager

References