Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco unified communications manager 10.0 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-0588
Cross-site request forgery (CSRF) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 10 allows remote malicious users to hijack the authentication of arbitrary users, aka Bug ID CSCuo77055.
Cisco Unified Communications Domain Manager 10.0
NA
CVE-2015-0591
Cisco Unified Communications Domain Manager (UCDM) 10 allows remote malicious users to cause a denial of service (daemon hang and GUI outage) via a flood of malformed TCP packets, aka Bug ID CSCur44177.
Cisco Unified Communications Domain Manager 10.0
NA
CVE-2014-3317
Directory traversal vulnerability in the Multiple Analyzer in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager 10.0(1) allows remote authenticated users to delete arbitrary files via a crafted URL, aka Bug ID CSCup76314.
Cisco Unified Communications Manager 10.0\\(1\\)
NA
CVE-2014-0724
The bulk administration interface in Cisco Unified Communications Manager (UCM) 10.0(1) and previous versions allows remote malicious users to bypass authentication and read arbitrary files by using an unspecified prompt, aka Bug ID CSCum05340.
Cisco Unified Communications Manager
Cisco Unified Communications Manager 10.0
NA
CVE-2014-0726
SQL injection vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communications Manager (UCM) 10.0(1) and previous versions allows remote malicious users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum05326.
Cisco Unified Communications Manager
Cisco Unified Communications Manager 10.0
NA
CVE-2014-3319
Directory traversal vulnerability in the Real-Time Monitoring Tool (RTMT) in Cisco Unified Communications Manager (CM) 10.0(1) allows remote authenticated users to read arbitrary files via a crafted URL, aka Bug ID CSCup57676.
Cisco Unified Communications Manager 10.0\\(1\\)
NA
CVE-2014-3338
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID...
Cisco Unified Communications Manager 10.0\\(1\\)
NA
CVE-2014-2184
The IP Manager Assistant (IPMA) component in Cisco Unified Communications Manager (Unified CM) allows remote malicious users to obtain sensitive information via a crafted URL, aka Bug ID CSCun74352.
Cisco Unified Communications Manager
NA
CVE-2014-2185
The Call Detail Records (CDR) Management component in Cisco Unified Communications Manager (Unified CM) allows remote authenticated users to obtain sensitive information by reading extraneous fields in an HTML document, aka Bug ID CSCun74374.
Cisco Unified Communications Manager
NA
CVE-2014-0729
SQL injection vulnerability in the Enterprise Mobility Application (EMApp) interface in Cisco Unified Communications Manager (UCM) allows remote malicious users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum05302.
Cisco Unified Communications Manager
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49333
CVE-2024-33901
CVE-2024-36001
CVE-2024-2835
firewall
XPath injection
authentication bypass
CVE-2024-22120
CVE-2024-32002
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »