CVE-2010-0587Cisco Unified Communications Manager vulnerability

CWE-3994 documents4 sources
Severity
7.8HIGHNVD
EPSS
0.6%
top 30.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 2

Description

Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)SR2, 6.x before 6.1(5), 7.x before 7.1(3a)su1, and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SCCP StationCapabilitiesRes message with an invalid MaxCap field, aka Bug ID CSCtc38985.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-5g58-6469-p6x8: Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 42022-05-02
CVEList
CVE-2010-0587: Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 42010-03-05

📋Vendor Advisories

1
Cisco
Cisco Digital Media Player Remote Display Unauthorized Content Injection Vulnerability2010-03-03
CVE-2010-0587 — Cisco vulnerability | cvebase