Show filters
64 Total Results
Displaying 51-60 of 64
Sort by:
Attacker Value
Unknown

CVE-2011-3288

Disclosure Date: October 06, 2011 (last updated February 16, 2024)
Cisco Unified Presence before 8.5(4) does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption, and process crash) via a crafted XML document containing a large number of nested entity references, aka Bug IDs CSCtq89842 and CSCtq88547, a similar issue to CVE-2003-1564.
Attacker Value
Unknown

CVE-2011-1643

Disclosure Date: August 29, 2011 (last updated October 04, 2023)
Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x, 7.x before 7.1(5b)su4, 8.0, and 8.5 before 8.5(1)su2 and Cisco Unified Presence Server 6.x, 7.x, 8.0, and 8.5 before 8.5xnr allow remote attackers to read database data by connecting to a query interface through an SSL session, aka Bug IDs CSCti81574, CSCto63060, CSCto72183, and CSCto73833.
0
Attacker Value
Unknown

CVE-2010-2840

Disclosure Date: August 26, 2010 (last updated October 04, 2023)
The Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact field in the header of a SIP SUBSCRIBE message, which allows remote attackers to cause a denial of service (process failure) via a malformed message, aka Bug ID CSCtd39629.
0
Attacker Value
Unknown

CVE-2010-2839

Disclosure Date: August 26, 2010 (last updated October 04, 2023)
SIPD in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) allows remote attackers to cause a denial of service (stack memory corruption and process failure) via a malformed SIP message, aka Bug ID CSCtd14474.
0
Attacker Value
Unknown

CVE-2009-2874

Disclosure Date: October 16, 2009 (last updated October 04, 2023)
The TimesTenD process in Cisco Unified Presence 1.x, 6.x before 6.0(6), and 7.x before 7.0(4) allows remote attackers to cause a denial of service (process crash) via a large number of TCP connections to ports 16200 and 22794, aka Bug ID CSCsy17662.
0
Attacker Value
Unknown

CVE-2008-1741

Disclosure Date: May 16, 2008 (last updated October 04, 2023)
The SIP Proxy (SIPD) service in Cisco Unified Presence before 6.0(3) allows remote attackers to cause a denial of service (core dump and service interruption) via a TCP port scan, aka Bug ID CSCsj64533.
0
Attacker Value
Unknown

CVE-2008-1158

Disclosure Date: May 16, 2008 (last updated October 04, 2023)
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via malformed packets, aka Bug ID CSCsh50164.
0
Attacker Value
Unknown

CVE-2008-1740

Disclosure Date: May 16, 2008 (last updated October 04, 2023)
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via an unspecified "stress test," aka Bug ID CSCsh20972.
0
Attacker Value
Unknown

CVE-2008-1154

Disclosure Date: April 04, 2008 (last updated October 04, 2023)
The Disaster Recovery Framework (DRF) master server in Cisco Unified Communications products, including Unified Communications Manager (CUCM) 5.x and 6.x, Unified Presence 1.x and 6.x, Emergency Responder 2.x, and Mobility Manager 2.x, does not require authentication for requests received from the network, which allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-3776

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
Cisco Unified Communications Manager (CUCM, formerly CallManager) and Unified Presence Server (CUPS) allow remote attackers to obtain sensitive information via unspecified vectors that reveal the SNMP community strings and configuration settings, aka (1) CSCsj20668 and (2) CSCsj25962.
0