Cisco Security Advisory – Several products in the Cisco Unified Communications family of products contain a command execution vulnerability in the Disaster Recovery Framework (DRF) feature. A remote, unauthenticated user could exploit this vulnerability to execute arbitrary commands that may allow full administrative access to affected systems. There is a workaround for this vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/65177/cisco-sa-20080403-drf.txt
Source: https://packetstormsecurity.com/files/65177/Cisco-Security-Advisory-20080403-drf.html

