#VU29451 Missing Authentication for Critical Function in Cisco Unified Customer Voice Portal - CVE-2020-3402
Published: July 2, 2020 / Updated: July 15, 2020
Cisco Unified Customer Voice Portal
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain access to sensitive information on the target system.
The vulnerability exists due the certain Java Remote Method Invocation (RMI) listeners are not properly authenticated. A remote attacker can send a specially crafted request and gain access to sensitive information on the target device.