CVE-2009-0614 describes an unspecified vulnerability in the Web Server component of Cisco Unified MeetingPlace Web Conferencing versions 6.0 before 6.0(517.0) and 7.0 before 7.0(2). This flaw allows remote, unauthenticated attackers to bypass authentication and gain administrative access through a crafted URL. With a CVSS score of 9.0, this vulnerability is critical, posing a high risk of complete compromise (Confidentiality, Integrity, and Availability). Despite its severity, there is no known public exploit code (Metasploit, Nuclei, ExploitDB), and it has received no community discussion or media coverage, indicating a low likelihood of active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.0\(171\), < 6.0\(517.0\)CPE matchmatch criteria | cpe:2.3:a:cisco:unified_meetingplace_web_conferencing:*:*:*:*:*:*:*:* | ||
>= 7.0\(1\), < 7.0\(2\)CPE matchmatch criteria | cpe:2.3:a:cisco:unified_meetingplace_web_conferencing:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.