Vulnerabilities > Cisco > Unified Communications Manager > 6.0.1b
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2010-08-26 | CVE-2010-2837 | Unspecified vulnerability in Cisco Unified Communications Manager The SIPStationInit implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.1SU before 6.1(5)SU1, 7.0SU before 7.0(2a)SU3, 7.1SU before 7.1(3b)SU2, 7.1 before 7.1(5), and 8.0 before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP message, aka Bug ID CSCtd17310. | 7.8 |
2009-08-27 | CVE-2009-2050 | Unspecified vulnerability in Cisco Unified Communications Manager Cisco Unified Communications Manager (aka CUCM, formerly CallManager) before 6.1(1) allows remote attackers to cause a denial of service (voice-services outage) via a malformed header in a SIP message, aka Bug ID CSCsi46466. | 7.8 |
2008-06-26 | CVE-2008-2062 | Permissions, Privileges, and Access Controls vulnerability in Cisco Unified Communications Manager The Real-Time Information Server (RIS) Data Collector service in Cisco Unified Communications Manager (CUCM) before 4.2(3)SR4, and 4.3 before 4.3(2)SR1, allows remote attackers to bypass authentication, and obtain cluster configuration information and statistics, via a direct TCP connection to the service port, aka Bug ID CSCsq35151. | 5.0 |
2008-06-26 | CVE-2008-2061 | Improper Input Validation vulnerability in Cisco Unified Communications Manager The Computer Telephony Integration (CTI) Manager service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3c) and 6.x before 6.1(2) allows remote attackers to cause a denial of service (TSP crash) via malformed network traffic to TCP port 2748. | 7.8 |
2008-05-16 | CVE-2008-1748 | Improper Input Validation vulnerability in Cisco Unified Communications Manager Cisco Unified Communications Manager 4.1 before 4.1(3)SR7, 4.2 before 4.2(3)SR4, 4.3 before 4.3(2), 5.x before 5.1(3), and 6.x before 6.1(1) does not properly validate SIP URLs, which allows remote attackers to cause a denial of service (service interruption) via a SIP INVITE message, aka Bug ID CSCsl22355. | 7.8 |
2008-05-16 | CVE-2008-1747 | Improper Input Validation vulnerability in Cisco Unified Communications Manager Unspecified vulnerability in Cisco Unified Communications Manager 4.1 before 4.1(3)SR6, 4.2 before 4.2(3)SR3, 4.3 before 4.3(2), 5.x before 5.1(3), and 6.x before 6.1(1) allows remote attackers to cause a denial of service (CCM service restart) via an unspecified SIP INVITE message, aka Bug ID CSCsk46944. | 7.8 |
2008-05-16 | CVE-2008-1743 | Resource Management Errors vulnerability in Cisco Unified Communications Manager Memory leak in the Certificate Trust List (CTL) Provider service in Cisco Unified Communications Manager (CUCM) 5.x before 5.1(3) and 6.x before 6.1(1) allows remote attackers to cause a denial of service (memory consumption and service interruption) via a series of malformed TCP packets, aka Bug ID CSCsi98433. | 7.8 |