CVE-2010-0590Cisco Unified Communications Manager vulnerability

CWE-3994 documents4 sources
Severity
7.8HIGHNVD
EPSS
0.6%
top 30.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 2

Description

The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.x before 7.1(3a)su1 and 8.x before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP Register message, aka Bug ID CSCtc37188.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-4hq4-73p9-hvch: The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 72022-05-02
CVEList
CVE-2010-0590: The CMSIPUtility component in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 72010-03-05

📋Vendor Advisories

1
Cisco
Cisco Digital Media Player Remote Display Unauthorized Content Injection Vulnerability2010-03-03
CVE-2010-0590 — Cisco vulnerability | cvebase