CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 9.0. It affects Cisco. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2015-0702
Severity
HIGH
CVSS
9
EPSS
2.92%
Cisco
Original NVD Description
Unrestricted file upload vulnerability in the Custom Prompts upload implementation in Cisco Unified MeetingPlace 8.6(1.9) allows remote authenticated users to execute arbitrary code by using the languageShortName parameter to upload a file that provides shell access, aka Bug ID CSCus95712.