Unrated severityNVD Advisory· Published Feb 20, 2014· Updated Apr 29, 2026
CVE-2014-0734
CVE-2014-0734
Description
SQL injection vulnerability in the Certificate Authority Proxy Function (CAPF) implementation in Cisco Unified Communications Manager (Unified CM) 10.0(1) and earlier allows remote attackers to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum46483.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
19cpe:2.3:a:cisco:unified_communications_manager:*:*:*:*:*:*:*:*+ 18 more
- cpe:2.3:a:cisco:unified_communications_manager:*:*:*:*:*:*:*:*range: <=10.0\(1\)
- cpe:2.3:a:cisco:unified_communications_manager:10.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:3.3\(5\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:3.3\(5\)sr1:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:3.3\(5\)sr2a:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.1\(3\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.1\(3\)sr1:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.1\(3\)sr2:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.1\(3\)sr3:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.1\(3\)sr4:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.3sr1:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.3sr2:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.2.3sr2b:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:unified_communications_manager:4.3:*:*:*:*:*:*:*
- (no CPE)range: <=10.0(1)
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0734nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/65645nvd
News mentions
0No linked articles in our index yet.