This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
| Summuary | |
|---|---|
| CPE Name | cpe:/a:cisco:unified_communications_manager:5.1(2) |
| Detail | |||
|---|---|---|---|
| Vendor | Cisco | First view | 2007-07-15 |
| Product | Unified Communications Manager | Last view | 2011-10-27 |
| Version | 5.1(2) | Type | Application |
| Edition | |||
| Language | |||
| Update | |||
| CPE Product | cpe:/a:cisco:unified_communications_manager | ||
Activity : Yearly
Related : CVE
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 7.8 | 2011-10-27 | CVE-2011-3315 | Network | Low | None Requ... | |
| 7.8 | 2009-09-28 | CVE-2009-2864 | Network | Low | None Requ... | |
| 7.8 | 2009-08-27 | CVE-2009-2054 | Network | Low | None Requ... | |
| 7.8 | 2009-08-27 | CVE-2009-2053 | Network | Low | None Requ... | |
| 7.8 | 2009-08-27 | CVE-2009-2052 | Network | Low | None Requ... | |
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 7.8 | 2009-08-27 | CVE-2009-2051 | Network | Low | None Requ... | |
| 7.8 | 2009-08-27 | CVE-2009-2050 | Network | Low | None Requ... | |
| 9 | 2009-03-12 | CVE-2009-0632 | Network | Low | Requires ... | |
| 4.3 | 2009-01-22 | CVE-2009-0057 | Network | Medium | None Requ... | |
| 10 | 2007-10-17 | CVE-2007-5538 | Network | Low | None Requ... | |
| 7.8 | 2007-10-17 | CVE-2007-5537 | Network | Low | None Requ... | |
| 5 | 2007-07-15 | CVE-2007-3776 | Network | Low | None Requ... | |
| 7.8 | 2007-07-15 | CVE-2007-3775 | Network | Low | None Requ... |
CWE : Common Weakness Enumeration
| % | id | Name |
|---|---|---|
| 20% (1) | CWE-399 | Resource Management Errors |
| 20% (1) | CWE-255 | Credentials Management |
| 20% (1) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
| 20% (1) | CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path ... |
| 20% (1) | CWE-20 | Improper Input Validation |
CAPEC : Common Attack Pattern Enumeration & Classificatio
| id | Name |
|---|---|
| CAPEC-2 | Inducing Account Lockout |
| CAPEC-82 | Violating Implicit Assumptions Regarding XML Content (aka XML Denial of Servi... |
| CAPEC-99 | XML Parser Attack |
| CAPEC-119 | Resource Depletion |
| CAPEC-121 | Locate and Exploit Test APIs |
| id | Name |
|---|---|
| CAPEC-125 | Resource Depletion through Flooding |
| CAPEC-130 | Resource Depletion through Allocation |
| CAPEC-147 | XML Ping of Death |
| CAPEC-197 | XEE (XML Entity Expansion) |
| CAPEC-227 | Denial of Service through Resource Depletion |
| CAPEC-228 | Resource Depletion through DTD Injection in a SOAP Message |
| CAPEC-229 | XML Attribute Blowup |
Open Source Vulnerability Database (OSVDB)
| id | Description |
|---|---|
| 76572 | Cisco Multiple Products Unspecified URI Traversal Aribtrary File Access |
| 58344 | Cisco Unified Communications Manager Malformed SIP Packet Processing Remote DoS |
| 57456 | Cisco Unified Communications Manager SIP Packet Processing Unspecified Remote... |
| 57455 | Cisco Unified Communications Manager SCCP Packet Handling Unspecified Remote DoS |
| 57454 | Cisco Unified Communications Manager Embedded Firewall Network Connection Sat... |
| id | Description |
|---|---|
| 57453 | Cisco Unified Communications Manager SIP Trunk Malformed Packet Handling Remo... |
| 57452 | Cisco Unified Communications Manager Unspecified SIP Packet Handling Remote DoS |
| 52589 | Cisco Unified Communications Manager IP Phone PAB Disclosure Privilege Escala... |
| 52317 | Cisco Unified Communications Manager Certificate Authority Proxy Function (CA... |
| 37941 | Cisco Unified Communications Manager (CUCM) SIP INVITE Message Saturation Rem... |
| 37940 | Cisco Unified Communications Manager (CUCM) Centralized TFTP File Locator Ser... |
| 36124 | Cisco CUCM / CUPS Unspecified SNMP Information Disclosure |
| 36123 | Cisco CUCM / CUPS Unspecified Cluster Services DoS |









