SQL injection vulnerability in the web framework in Cisco Unity Connection 9.1(2) and earlier allows remote authenticated users to execute arbitrary SQL commands via a crafted request, aka Bug ID CSCuq31016.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/95187http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3336http://tools.cisco.com/security/center/viewAlert.x?alertId=35228http://www.securityfocus.com/bid/69163http://secunia.com/advisories/59498http://www.securitytracker.com/id/1030704