CVE-2025-20278
- EPSS 0.02%
- Published 04.06.2025 16:18:20
- Last modified 31.07.2025 15:02:05
A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device as the root user. This vulnerability i...
CVE-2025-20112
- EPSS 0.02%
- Published 21.05.2025 16:19:24
- Last modified 21.05.2025 20:24:58
A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability is due to excessive permissions tha...
CVE-2020-3532
- EPSS 0.09%
- Published 18.11.2024 16:15:07
- Last modified 18.11.2024 17:11:17
A vulnerability in the web-based management interface of Cisco Unified Communications Manager, Cisco Unified Communications Manager Session Management Edition, Cisco Unified Communications Manager IM & Presence Service, and Cisco&n...
CVE-2024-20305
- EPSS 0.08%
- Published 26.01.2024 18:15:11
- Last modified 21.11.2024 08:52:18
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-ba...
- EPSS 3.03%
- Published 26.01.2024 18:15:10
- Last modified 29.05.2025 16:15:33
A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to the improper processing of us...
CVE-2024-20272
- EPSS 0.36%
- Published 17.01.2024 17:15:12
- Last modified 02.06.2025 15:15:29
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system and execute commands on the underlying operating system. This vulnerabilit...
CVE-2023-20259
- EPSS 0.14%
- Published 04.10.2023 17:15:09
- Last modified 21.11.2024 07:41:00
A vulnerability in an API endpoint of multiple Cisco Unified Communications Products could allow an unauthenticated, remote attacker to cause high CPU utilization, which could impact access to the web-based management interface and cause delays with ...
CVE-2023-20266
- EPSS 0.04%
- Published 30.08.2023 17:15:08
- Last modified 21.11.2024 07:41:02
A vulnerability in Cisco Emergency Responder, Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), and Cisco Unity Connection could allow an authenticated, remote attacke...
- EPSS 1.64%
- Published 06.07.2022 21:15:11
- Last modified 21.11.2024 06:43:42
A vulnerability in the Disaster Recovery framework of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P), and Cisco Unity Connection could allow an authenticated, re...
CVE-2022-20800
- EPSS 0.32%
- Published 06.07.2022 21:15:11
- Last modified 21.11.2024 06:43:34
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager Session Management Edition (Unified CM SME), Cisco Unified Communications Manager IM & Presence Servi...