Vulnerability Details CVE-2006-2166
Unspecified vulnerability in the HTTP management interface in Cisco Unity Express (CUE) 2.2(2) and earlier, when running on any CUE Advanced Integration Module (AIM) or Network Module (NM), allows remote authenticated attackers to reset the password for any user with an expired password.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.7%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2006-2166
-
cpe:2.3:a:cisco:unity_express_software:1.1.1
-
cpe:2.3:a:cisco:unity_express_software:2.1.1
-
cpe:2.3:a:cisco:unity_express_software:2.2.2
-
cpe:2.3:h:cisco:unity_express:-
-
cpe:2.3:h:cisco:unity_express:1.1.1
-
cpe:2.3:h:cisco:unity_express:2.1.1
-
cpe:2.3:h:cisco:unity_express:2.2.2