Vulnerabilities > Cisco > Unity Express > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-11-08 CVE-2018-15381 Deserialization of Untrusted Data vulnerability in Cisco Unity Express
A Java deserialization vulnerability in Cisco Unity Express (CUE) could allow an unauthenticated, remote attacker to execute arbitrary shell commands with the privileges of the root user.
network
low complexity
cisco CWE-502
critical
9.8