CVE-2015-4307: Cisco Prime Collaboration Provisioning
High severity, CVSS 9.0. EPSS: 2.6% chance of exploitation in the next 30 days.
The web framework in Cisco Prime Collaboration Provisioning before 11.0 allows remote authenticated users to bypass intended access restrictions and create administrative accounts via a crafted URL, aka Bug ID CSCut64111.
Affected products
- Cisco Prime Collaboration Provisioning: version 9.0.0 only; version 9.5.0 only; version 10.0.0 only; version 10.5.0 only; version 10.5.1 only; version 10.6.0 only
Published 2015-09-20. Last modified 2026-06-17.