CVE Database
/

CVE-2014-3297

Back to search

CVE-2014-3297

Published: Jul 2, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Cisco Intelligent Automation for Cloud in Cisco Cloud Portal does not properly restrict the content of MyServices action URLs, which allows remote authenticated users to obtain sensitive information by reading (1) web-server access logs, (2) web-server Referer logs, or (3) the browser history, aka Bug IDs CSCui36937, CSCui37004, and CSCui36927.

VendorProductVersions

n/a

n/a

affected
n/a

References

59401
third-party-advisory
x_refsource_SECUNIA
68308
vdb-entry
x_refsource_BID
58985
third-party-advisory
x_refsource_SECUNIA
1030510
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now