CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects Cisco. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2015-4298
Severity
MEDIUM
CVSS
6.5
EPSS
2.46%
Cisco
Original NVD Description
Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs authorization, which allows remote authenticated users to read or write to stored data via unspecified vectors, aka Bug ID CSCuo89056.