SQL injection vulnerability in the Java database interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum05313.
| Software | From | Fixed in |
|---|---|---|
| cisco / unified_communications_manager | 10.0 | 10.0.x |
| cisco / unified_communications_manager | - | 10.0\(1\).x |