CVE-2013-6688
Last modified
CVE-2013-6688 is a vulnerability of currently unknown severity. Directory traversal vulnerability in the license-upload interface in the Enterprise License Manager (ELM) component in Cisco Unified Communications Manager 9.1(1) and earlier allows remote authenticated users to create arbitrary files via a crafted path, aka Bug ID CSCui58222.. EPSS estimates a 2.13% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in the license-upload interface in the Enterprise License Manager (ELM) component in Cisco Unified Communications Manager 9.1(1) and earlier allows remote authenticated users to create arbitrary files via a crafted path, aka Bug ID CSCui58222.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unified Communications Manager | <= 9.1\(1\) |
| Cisco | Unified Communications Manager | 3.3\(5\) |
| Cisco | Unified Communications Manager | 3.3\(5\)sr1 |
| Cisco | Unified Communications Manager | 3.3\(5\)sr2a |
| Cisco | Unified Communications Manager | 4.1\(3\) |
| Cisco | Unified Communications Manager | 4.1\(3\)sr1 |
| Cisco | Unified Communications Manager | 4.1\(3\)sr2 |
| Cisco | Unified Communications Manager | 4.1\(3\)sr3 |
| Cisco | Unified Communications Manager | 4.1\(3\)sr4 |
| Cisco | Unified Communications Manager | 4.2 |
| Cisco | Unified Communications Manager | 4.2.1 |
| Cisco | Unified Communications Manager | 4.2.2 |
| Cisco | Unified Communications Manager | 4.2.3 |
| Cisco | Unified Communications Manager | 4.2.3sr1 |
| Cisco | Unified Communications Manager | 4.2.3sr2 |
| Cisco | Unified Communications Manager | 4.2.3sr2b |
| Cisco | Unified Communications Manager | 4.3 |
| Cisco | Unified Communications Manager | 4.3\(1\) |
| Cisco | Unified Communications Manager | 5.0 |
| Cisco | Unified Communications Manager | 5.1 |
| Cisco | Unified Communications Manager | 5.1\(1\) |
| Cisco | Unified Communications Manager | 5.1\(1b\) |
| Cisco | Unified Communications Manager | 5.1\(1c\) |
| Cisco | Unified Communications Manager | 5.1\(2\) |
| Cisco | Unified Communications Manager | 5.1\(2a\) |
| Cisco | Unified Communications Manager | 5.1\(2b\) |
| Cisco | Unified Communications Manager | 5.1\(3\) |
| Cisco | Unified Communications Manager | 5.1\(3a\) |
| Cisco | Unified Communications Manager | 5.1\(3c\) |
| Cisco | Unified Communications Manager | 5.1\(3d\) |
| Cisco | Unified Communications Manager | 5.1\(3e\) |
| Cisco | Unified Communications Manager | 5.1.2 |
| Cisco | Unified Communications Manager | 6.0 |
| Cisco | Unified Communications Manager | 6.0\(1\) |
| Cisco | Unified Communications Manager | 6.0\(1a\) |
| Cisco | Unified Communications Manager | 6.0\(1b\) |
| Cisco | Unified Communications Manager | 6.1\(1\) |
| Cisco | Unified Communications Manager | 6.1\(1a\) |
| Cisco | Unified Communications Manager | 6.1\(1b\) |
| Cisco | Unified Communications Manager | 6.1\(2\) |
| Cisco | Unified Communications Manager | 6.1\(2\)su1 |
| Cisco | Unified Communications Manager | 6.1\(2\)su1a |
| Cisco | Unified Communications Manager | 6.1\(3\) |
| Cisco | Unified Communications Manager | 6.1\(3a\) |
| Cisco | Unified Communications Manager | 6.1\(3b\) |
| Cisco | Unified Communications Manager | 6.1\(3b\)su1 |
| Cisco | Unified Communications Manager | 6.1\(4\) |
| Cisco | Unified Communications Manager | 6.1\(4\)su1 |
| Cisco | Unified Communications Manager | 6.1\(4a\) |
| Cisco | Unified Communications Manager | 6.1\(4a\)su2 |
Showing 50 of 113 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-6688?
How severe is CVE-2013-6688?
How do I fix CVE-2013-6688?
Are you affected by CVE-2013-6688?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
