A vulnerability in the Inventory Management feature of Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to view sensitive information on the system.

The vulnerability is due to insufficient protection of restricted information.

An attacker could exploit this vulnerability by accessing unauthorized information via the user interface.

There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170906-pcpt1
A vulnerability in the Inventory Management feature of Cisco Prime Collaboration Provisioning Tool could allow an authenticated, remote attacker to view sensitive information on the system.

The vulnerability is due to insufficient protection of restricted information.

An attacker could exploit this vulnerability by accessing unauthorized information via the user interface.

There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170906-pcpt1

Security Impact Rating: Medium

CVE: CVE-2017-6793

Leave a Reply