Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco unified contact center express vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2016-6427
Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 up to and including 9.1(1), as used in Unified Contact Center Express 10.0(1) up to and including 11.0(1), allows remote malicious users to hijack the authentication of arbitrary use...
Cisco Unified Contact Center Express 10.0(1)
Cisco Unified Intelligence Center 9.1(1)
Cisco Unified Intelligence Center 8.5.4
Cisco Unified Intelligence Center 9.0(2)
Cisco Unified Contact Center Express 10.5(1)
Cisco Unified Contact Center Express 10.6(1)
Cisco Unified Contact Center Express 11.0(1)
7.5
CVSSv3
CVE-2016-6426
The j_spring_security_switch_user function in Cisco Unified Intelligence Center (CUIC) 8.5.4 up to and including 9.1(1), as used in Unified Contact Center Express 10.0(1) up to and including 11.0(1), allows remote malicious users to create user accounts by visiting an unspecified...
Cisco Unified Contact Center Express 10.0(1)
Cisco Unified Intelligence Center 9.1(1)
Cisco Unified Intelligence Center 8.5.4
Cisco Unified Intelligence Center 9.0(2)
Cisco Unified Contact Center Express 10.5(1)
Cisco Unified Contact Center Express 10.6(1)
Cisco Unified Contact Center Express 11.0(1)
6.1
CVSSv3
CVE-2016-6425
Cross-site scripting (XSS) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 up to and including 9.1(1), as used in Unified Contact Center Express 10.0(1) up to and including 11.0(1), allows remote malicious users to inject arbitrary web script or HTML via a crafted...
Cisco Unified Contact Center Express 10.0(1)
Cisco Unified Intelligence Center 9.1(1)
Cisco Unified Intelligence Center 8.5.4
Cisco Unified Intelligence Center 9.0(2)
Cisco Unified Contact Center Express 10.5(1)
Cisco Unified Contact Center Express 10.6(1)
Cisco Unified Contact Center Express 11.0(1)
6.1
CVSSv3
CVE-2016-1298
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Contact Center Express 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote malicious users to inject arbitrary web script or HTML via vectors related to permalinks, aka Bug ID CSCux92033.
Cisco Unified Contact Center Express 10.0(1)
Cisco Unified Contact Center Express 10.5(1)
Cisco Unified Contact Center Express 10.6(1)
Cisco Unified Contact Center Express 11.0(1)
NA
CVE-2011-2583
Cisco Unified Contact Center Express (aka CCX) 8.0 and 8.5 allows remote malicious users to cause a denial of service via network traffic, as demonstrated by an SEC-BE-STABLE test case, aka Bug ID CSCth33834.
Cisco Unified Contact Center Express 8.5
Cisco Unified Contact Center Express 8.0
6.1
CVSSv3
CVE-2017-6722
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of Cisco Unified Contact Center Express (UCCx) could allow an unauthenticated, remote malicious user to masquerade as a legitimate user, aka a Clear Text Authentication Vulnerability. More Informatio...
Cisco Unified Contact Center Express 11.5.1su1
Cisco Unified Contact Center Express 11.5.1es01
Cisco Unified Contact Center Express 11.5(1)
7.2
CVSSv3
CVE-2019-1888
A vulnerability in the Administration Web Interface of Cisco Unified Contact Center Express (Unified CCX) could allow an authenticated, remote malicious user to upload arbitrary files and execute commands on the underlying operating system. To exploit this vulnerability, an attac...
Cisco Unified Contact Center Express 12.0(1)
Cisco Unified Contact Center Express 11.6(1)
Cisco Unified Contact Center Express 11.6(2)
Cisco Unified Ip Interactive Voice Response 11.6(2)
Cisco Unified Ip Interactive Voice Response 11.6(1)
1 Article
NA
CVE-2014-2180
The Document Management component in Cisco Unified Contact Center Express does not properly validate a parameter, which allows remote authenticated users to upload files to arbitrary pathnames via a crafted HTTP request, aka Bug ID CSCun74133.
Cisco Unified Contact Center Express Editor Software -
Cisco Unified Contact Center Enterprise
9.6
CVSSv3
CVE-2022-20658
A vulnerability in the web-based management interface of Cisco Unified Contact Center Management Portal (Unified CCMP) and Cisco Unified Contact Center Domain Manager (Unified CCDM) could allow an authenticated, remote malicious user to elevate their privileges to Administrator. ...
Cisco Unified Contact Center Express 12.0.1
Cisco Unified Contact Center Express 12.5.1
Cisco Unified Contact Center Management Portal
6.1
CVSSv3
CVE-2018-0400
Multiple vulnerabilities in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote malicious user to conduct cross-site scripting (XSS) attacks against a user of the interface. Cisco Bug IDs: CSCvg70904.
Cisco Unified Contact Center Express 11.5(1)
Cisco Unified Ip Interactive Voice Response 11.5(1)
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
deserialization
CVE-2024-4541
CVE-2024-3080
CVE-2024-4787
log injection
CVE-2024-5967
inject
CVE-2024-30078
CVE-2024-5899
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »