Vulnerable Systems:
*Cisco Systems 9.1 SP1,9.1 SP2 and prior
Cisco Cloud Portal contains a flaw in the nsAPI interface that may lead to unauthorized disclosure of potentially sensitive information. The issue is due to the nsAPI interface implementation failing to properly validate user permissions. With a specially crafted URL, an authenticated remote attacker can gain access to sensitive user information.