#VU24527 Information disclosure in Unified Communications Manager (CallManager) - CVE-2019-15963
Published: January 24, 2020
Unified Communications Manager (CallManager)
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to insufficient protection of user-supplied input by the web-based management interface of the affected service. A remote authenticated attacker can access the interface, view restricted portions of the software configuration and gain unauthorized access to sensitive information on the system.