Vulnerabilities > Cisco > Unified Communications Manager Express
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-09-28 | CVE-2009-2865 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Cisco IOS and Unified Communications Manager Express Buffer overflow in the login implementation in the Extension Mobility feature in the Unified Communications Manager Express (CME) component in Cisco IOS 12.4XW, 12.4XY, 12.4XZ, and 12.4YA allows remote attackers to execute arbitrary code or cause a denial of service via crafted HTTP requests, aka Bug ID CSCsq58779. | 7.6 |