VYPR
Unrated severityNVD Advisory· Published May 9, 2013· Updated Apr 29, 2026

CVE-2013-1224

CVE-2013-1224

Description

Directory traversal vulnerability in the Resource Manager in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to overwrite arbitrary files via a crafted (1) HTTP or (2) HTTPS request that triggers incorrect parameter validation, aka Bug ID CSCub38369.

Affected products

13
  • cpe:2.3:a:cisco:unified_customer_voice_portal:*:*:*:*:*:*:*:*+ 12 more
    • cpe:2.3:a:cisco:unified_customer_voice_portal:*:*:*:*:*:*:*:*range: <=9.0\(1\)
    • cpe:2.3:a:cisco:unified_customer_voice_portal:3.0:sr1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:3.0:sr2:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:3.6\(10\):es01:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:4.0\(2\):*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:4.0\(2\):sr1:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:7.0\(2\):*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:8.0\(1\):*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:8.5\(1\):*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:unified_customer_voice_portal:9.0:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.