CVE Database
/

CVE-2018-0317

Back to search

CVE-2018-0317

Published: Jun 7, 2018

Modified: Nov 29, 2024

PUBLISHED

Description

A vulnerability in the web interface of Cisco Prime Collaboration Provisioning (PCP) could allow an authenticated, remote attacker to escalate their privileges. The vulnerability is due to insufficient web portal access control checks. An attacker could exploit this vulnerability by modifying an access request. An exploit could allow the attacker to promote their account to any role defined on the system. This vulnerability affects Cisco Prime Collaboration Provisioning (PCP) Releases 12.2 and prior. Cisco Bug IDs: CSCvc90286.

VendorProductVersions

n/a

Cisco Prime Collaboration Provisioning unknown

affected
Cisco Prime Collaboration Provisioning unknown

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now