Vulnerabilities > Cisco > Unity Connection > 8.6.base

DATE CVE VULNERABILITY TITLE RISK
2015-04-03 CVE-2015-0615 Data Processing Errors vulnerability in Cisco Unity Connection
The call-handling implementation in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (port consumption) by improperly terminating SIP sessions, aka Bug ID CSCul28089.
network
cisco CWE-19
7.1
2015-04-03 CVE-2015-0614 Data Processing Errors vulnerability in Cisco Unity Connection
The Connection Conversation Manager (aka CuCsMgr) process in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (core dump and restart) via crafted SIP INVITE messages, aka Bug ID CSCul26267.
network
cisco CWE-19
7.1
2015-04-03 CVE-2015-0613 Data Processing Errors vulnerability in Cisco Unity Connection
The Connection Conversation Manager (aka CuCsMgr) process in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (core dump and restart) via crafted SIP INVITE messages, aka Bug ID CSCul20444.
network
cisco CWE-19
7.1
2014-11-07 CVE-2014-7988 Information Exposure vulnerability in Cisco Unity Connection
The Unified Messaging Service (UMS) in Cisco Unity Connection 10.5 and earlier allows remote authenticated users to obtain sensitive information by reading log files, aka Bug ID CSCur06493.
network
low complexity
cisco CWE-200
4.0