Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-0614

Опубликовано: 03 апр. 2015
Источник: nvd
CVSS2: 7.1
EPSS Низкий

Описание

The Connection Conversation Manager (aka CuCsMgr) process in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (core dump and restart) via crafted SIP INVITE messages, aka Bug ID CSCul26267.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cisco:unity_connection:8.5\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su4:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su5:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5\(1\)su6:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.5_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(1a\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(2\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(2a\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:8.6_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:9.0\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:9.1\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:9.1\(2\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:10.0.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unity_connection:10.0.5:*:*:*:*:*:*:*

EPSS

Процентиль: 60%
0.00399
Низкий

7.1 High

CVSS2

Дефекты

CWE-19

Связанные уязвимости

github
больше 3 лет назад

The Connection Conversation Manager (aka CuCsMgr) process in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (core dump and restart) via crafted SIP INVITE messages, aka Bug ID CSCul26267.

EPSS

Процентиль: 60%
0.00399
Низкий

7.1 High

CVSS2

Дефекты

CWE-19