Skip to main content

CVE-2024-20272 Cisco Unity Connection Unauthenticated Arbitrary File Upload Vulnerability


CarySun
Forum|alt.badge.img+7

Cisco Security Advisory was released today about the Cisco Unity Connection Unauthenticated Arbitrary File Upload Vulnerability.

An unauthenticated, remote attacker might exploit a vulnerability in Cisco Unity Connection's web-based administration interface to upload arbitrary files to an affected system and execute instructions on the underlying operating system.

An exploit that is effective could allow the attacker to store malicious files on the system, execute arbitrary instructions on the operating system, and gain root access.

Please Upgrade to the appropriate software ASAP.

 

The detailed information is below link.

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuc-unauth-afu-FROYsCsD

 

2 comments

Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8521 comments
  • January 10, 2024

Thanks for sharing this, Cary. 😎


coolsport00
Forum|alt.badge.img+20
  • Veeam Legend
  • 4155 comments
  • January 11, 2024

Appreciate you sharing Cary.


Comment