CVE-2014-2286 | Digium Asterisk 12.0.0 Cookie main/http.c input validation (AST-2014-001 / Nessus ID 73141)
A vulnerability described as critical has been identified in Digium Asterisk 12.0.0. Affected by this issue is some unknown functionality of the file main/http.c of the component Cookie Handler. Executing a manipulation can lead to improper input validation.
This vulnerability is registered as CVE-2014-2286. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is recommended.