Cisco Unified Communications Manager vulnerabilities
208 known vulnerabilities affecting cisco/unified_communications_manager.
Total CVEs
208
CISA KEV
3
actively exploited
Public exploits
8
Exploited in wild
4
Severity breakdown
CRITICAL12HIGH77MEDIUM117LOW1
Vulnerabilities
Page 2 of 11
CVE-2025-20326P3HIGHCVSS 8.8≥ 15.0, < 15su3v12.5+1 more2025-09-03
CVE-2025-20326 [HIGH] CWE-352 CVE-2025-20326: A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unifi
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) Software and Cisco Unified CM Session Management Edition (SME) Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected device.
This vulnerability is due to insufficient CSRF p
nvd
CVE-2014-3338P3HIGHCVSS 8.5v10.0\(1\)2014-08-12
CVE-2014-3338 [HIGH] CWE-20 CVE-2014-3338: The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is e
The CTIManager module in Cisco Unified Communications Manager (CM) 10.0(1), when single sign-on is enabled, does not properly validate Kerberos SSO tokens, which allows remote authenticated users to gain privileges and execute arbitrary commands via crafted token data, aka Bug ID CSCum95491.
nvd
CVE-2020-3177P3HIGHCVSS 7.5v10.5\(2.10000.5\)v11.5\(1.10000.6\)+2 more2020-04-15
CVE-2020-3177 [HIGH] CWE-22 CVE-2020-3177: A vulnerability in the Tool for Auto-Registered Phones Support (TAPS) of Cisco Unified Communication
A vulnerability in the Tool for Auto-Registered Phones Support (TAPS) of Cisco Unified Communications Manager (UCM) and Cisco Unified Communications Manager Session Management Edition (SME) could allow an unauthenticated, remote attacker to conduct directory traversal attacks on an affected device. The vulnerability is due to insufficient validation of u
nvd
CVE-2022-20816P3HIGHCVSS 8.1≥ 11.5\(1\), < 14su22022-08-10
CVE-2022-20816 [HIGH] CWE-22 CVE-2022-20816: A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unifi
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an authenticated, remote attacker to delete arbitrary files from an affected system. This vulnerability exists because the affected software does not
nvd
CVE-2006-5278P3CRITICALCVSS 10.0≥ 4.3, ≤ 4.3\(1\)2007-07-15
CVE-2006-5278 [CRITICAL] CVE-2006-5278: Integer overflow in the Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cis
Integer overflow in the Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cisco Unified Communications Manager (CUCM, formerly CallManager) before 20070711 allow remote attackers to execute arbitrary code via crafted packets, resulting in a heap-based buffer overflow.
nvd
CVE-2011-1643P3CRITICALCVSS 10.0v6.0v6.1\(1\)+46 more2011-08-29
CVE-2011-1643 [CRITICAL] CWE-200 CVE-2011-1643: Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x, 7.x before 7.1(5b)su4, 8.
Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x, 7.x before 7.1(5b)su4, 8.0, and 8.5 before 8.5(1)su2 and Cisco Unified Presence Server 6.x, 7.x, 8.0, and 8.5 before 8.5xnr allow remote attackers to read database data by connecting to a query interface through an SSL session, aka Bug IDs CSCti81574, CSCto63060, CSCto72183,
nvd
CVE-2020-3135P3HIGHCVSS 8.8fixed in 11.5\(1\)2020-09-23
CVE-2020-3135 [HIGH] CWE-352 CVE-2020-3135: A vulnerability in the web-based management interface of Cisco Unified Communications Manager (UCM)
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (UCM) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface on an affected device. An attacker
nvd
CVE-2009-0632P3CRITICALCVSS 9.0v4.1v4.2+28 more2009-03-12
CVE-2009-0632 [CRITICAL] CWE-255 CVE-2009-0632: The IP Phone Personal Address Book (PAB) Synchronizer feature in Cisco Unified Communications Manage
The IP Phone Personal Address Book (PAB) Synchronizer feature in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.1, 4.2 before 4.2(3)SR4b, 4.3 before 4.3(2)SR1b, 5.x before 5.1(3e), 6.x before 6.1(3), and 7.0 before 7.0(2) sends privileged directory-service account credentials to the client in cleartext, which allows remote a
nvd
CVE-2006-5277P3CRITICALCVSS 9.3≥ 4.3, ≤ 4.3\(1\)≥ 5.1, ≤ 5.1\(1\)2007-07-15
CVE-2006-5277 [CRITICAL] CVE-2006-5277: Off-by-one error in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Uni
Off-by-one error in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM, formerly CallManager) before 20070711 allow remote attackers to execute arbitrary code via a crafted packet that triggers a heap-based buffer overflow.
nvd
CVE-2013-3462P3HIGHCVSS 8.5v8.6v8.6\(1\)+38 more2013-08-25
CVE-2013-3462 [HIGH] CWE-119 CVE-2013-3462: Buffer overflow in Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6, 8.5(x
Buffer overflow in Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6, 8.5(x) before 8.5(1)su6, 8.6(x) before 8.6(2a)su3, and 9.x before 9.1(2) allows remote authenticated users to execute arbitrary code via unspecified vectors, aka Bug ID CSCud54358.
nvd
CVE-2016-9210P3HIGHCVSS 7.5v11.5\(1.11007.2\)2016-12-14
CVE-2016-9210 [HIGH] CWE-22 CVE-2016-9210: A vulnerability in the Cisco Unified Reporting upload tool accessed via the Cisco Unified Communicat
A vulnerability in the Cisco Unified Reporting upload tool accessed via the Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to modify arbitrary files on the file system. More Information: CSCvb61698. Known Affected Releases: 11.5(1.11007.2). Known Fixed Releases: 12.0(0.98000.168) 12.0(0.98000.178) 12.0(0.98000.399) 1
nvd
CVE-2023-20266P3HIGHCVSS 7.2v12.5.1su82023-08-30
CVE-2023-20266 [HIGH] CWE-347 CVE-2023-20266: A vulnerability in Cisco Emergency Responder, Cisco Unified Communications Manager (Unified CM), Cis
A vulnerability in Cisco Emergency Responder, Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), and Cisco Unity Connection could allow an authenticated, remote attacker to elevate privileges to root on an affected device.
This vulnerability exists because the applicatio
nvd
CVE-2019-1837P3HIGHCVSS 7.5v10.5\(2.10000.5\)v11.5\(1.10000.6\)+2 more2019-04-18
CVE-2019-1837 [HIGH] CWE-129 CVE-2019-1837: A vulnerability in the User Data Services (UDS) API of Cisco Unified Communications Manager (Unified
A vulnerability in the User Data Services (UDS) API of Cisco Unified Communications Manager (Unified CM) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the management GUI. The vulnerability is due to improper validation of input parameters in the UDS API requests. An attacker could exploit this vulnerabil
nvd
CVE-2014-0728P3HIGHCVSS 7.5≤ 10.0\(1\)v10.02014-02-13
CVE-2014-0728 [HIGH] CWE-89 CVE-2014-0728: SQL injection vulnerability in the Java database interface in Cisco Unified Communications Manager (
SQL injection vulnerability in the Java database interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum05313.
nvd
CVE-2023-20259P3HIGHCVSS 7.5v12.5\(1\)su7v14su32023-10-04
CVE-2023-20259 [HIGH] CWE-400 CVE-2023-20259: A vulnerability in an API endpoint of multiple Cisco Unified Communications Products could allow an
A vulnerability in an API endpoint of multiple Cisco Unified Communications Products could allow an unauthenticated, remote attacker to cause high CPU utilization, which could impact access to the web-based management interface and cause delays with call processing. This API is not used for device management and is unlikely to be used in normal operati
nvd
CVE-2015-6360P3HIGHCVSS 7.5v9.9\(9\)st1.92016-04-21
CVE-2015-6360 [HIGH] CWE-119 CVE-2015-6360: The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a d
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
nvd
CVE-2016-6364P3HIGHCVSS 7.5v11.5.02016-08-23
CVE-2016-6364 [HIGH] CWE-200 CVE-2016-6364: The User Data Services (UDS) API implementation in Cisco Unified Communications Manager 11.5 allows
The User Data Services (UDS) API implementation in Cisco Unified Communications Manager 11.5 allows remote attackers to bypass intended access restrictions and obtain sensitive information via unspecified API calls, aka Bug ID CSCux67855.
nvd
CVE-2014-0726P3HIGHCVSS 7.5≤ 10.0\(1\)v10.02014-02-13
CVE-2014-0726 [HIGH] CWE-89 CVE-2014-0726: SQL injection vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communicat
SQL injection vulnerability in the IP Manager Assistant (IPMA) interface in Cisco Unified Communications Manager (UCM) 10.0(1) and earlier allows remote attackers to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCum05326.
nvd
CVE-2017-6758P3MEDIUMCVSS 6.5v11.5\(1.10000.6\)2017-08-07
CVE-2017-6758 [MEDIUM] CWE-22 CVE-2017-6758: A vulnerability in the web framework of Cisco Unified Communications Manager 11.5(1.10000.6) could a
A vulnerability in the web framework of Cisco Unified Communications Manager 11.5(1.10000.6) could allow an authenticated, remote attacker to access arbitrary files in the context of the web root directory structure on an affected device. The vulnerability is due to insufficient input validation by the affected software. An attacker could exploit this
nvd
CVE-2007-5538P3CRITICALCVSS 10.0≤ 5.1\(2\)2007-10-18
CVE-2007-5538 [CRITICAL] CWE-119 CVE-2007-5538: Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager
Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), and Unified CallManager 5.0, allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors involving the processing of filenames, aka CSCsh47712.
nvd