Skip to main content

Vendor/product archive

cisco / unified_presence_server CVEs

Beta · best-effort

16 CVEs tagged to cisco / unified_presence_server1 Critical, 9 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2015-4220

Published Jun 25, 2015

Cross-site scripting (XSS) vulnerability in Cisco Unified Presence Server 9.1(1) allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug I…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3328

Published Jul 26, 2014

The Intercluster Sync Agent Service in Cisco Unified Presence Server allows remote attackers to cause a denial of service via a TCP SYN flood, aka Bug ID CSCun34125.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6983

Published Dec 31, 2013

SQL injection vulnerability in the web interface in Cisco Unified Presence Server allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-1242

Published May 10, 2013

Memory leak in the web framework in the server in Cisco Unified Presence (CUP) allows remote attackers to cause a denial of service (memory consumption) via malformed TCP packets,…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-1137

Published Feb 27, 2013

Cisco Unified Presence Server (CUPS) 8.6, 9.0, and 9.1 before 9.1.1 allows remote attackers to cause a denial of service (CPU consumption) via crafted packets to the SIP TCP port,…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2840

Published Aug 26, 2010

The Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact field in the header of a SIP SUBSC…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-2839

Published Aug 26, 2010

SIPD in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) allows remote attackers to cause a denial of service (stack memory corruption and process failure) via a mal…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2009-2874

Published Oct 16, 2009

The TimesTenD process in Cisco Unified Presence 1.x, 6.x before 6.0(6), and 7.x before 7.0(4) allows remote attackers to cause a denial of service (process crash) via a large numb…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-16 of 16 CVEsPage 1 of 1