CVE-2015-4298 - Draconian Pocho
Description
Cisco Unified Web and E-Mail Interaction Manager 9.0(2) and 11.0(1) improperly performs authorization which allows remote authenticated users to read or write to stored data via unspecified vectors aka Bug ID CSCuo89056.
Reference
http://tools.cisco.com/security/center/viewAlert.x?alertId=40428 http://www.securityfocus.com/bid/76348 http://www.securitytracker.com/id/1033286