VendorsCiscodigital_media_managerall versions
Vulnerabilities

Cisco Digital Media Manager (DMM) -

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2010-0570
Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x has a default password for the Tomcat administration account, which makes it easier for remote attackers to execute arbitrary code via a crafted web application, aka Bug ID CSCta03378.
Published 2010-03-05 · Modified
10.0EPSS 0.045
CVE-2012-0329
Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows remote authenticated users to execute arbitrary code via vectors involving a URL and an administrative resource, aka Bug ID CSCts63878.
Published 2012-01-19 · Modified
9.0EPSS 0.032
CVE-2010-0571
Unspecified vulnerability in Cisco Digital Media Manager (DMM) 5.0.x and 5.1.x allows remote authenticated users to gain privileges via unknown vectors, and consequently execute arbitrary code via a crafted web application, aka Bug ID CSCtc46008.
Published 2010-03-05 · Modified
8.5EPSS 0.028
CVE-2017-9805
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses an XStreamHandler with an instance of XStream for deserialization without any type filtering, which can lead to Remote Code Execution when deserializing XML payloads.
Published 2017-09-15 · Analyzed
8.1KEV1 PoCEPSS 0.994
CVE-2010-0572
Cisco Digital Media Manager (DMM) before 5.2 allows remote authenticated users to discover Cisco Digital Media Player credentials via vectors related to reading a (1) error log or (2) stack trace, aka Bug ID CSCtc46050.
Published 2010-03-05 · Modified
7.1EPSS 0.025
CVE-2013-3446
Open redirect vulnerability in the login page in Cisco Digital Media Manager (DMM) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCub23849.
Published 2013-09-12 · Modified
5.8EPSS 0.011