Skip to content
Skip to search
Skip to footer
Cisco.com Worldwide
Products and Services
Solutions
Support
Learn
Explore Cisco
How to Buy
Partners Home
Partner Program
Support
Tools
Find a Cisco Partner
Meet our Partners
Become a Cisco Partner
Support
Product Support
Unified Communications
Cisco Unified Communications Manager (CallManager)
Security Advisories, Responses and Notices
Some links below may open a new browser window to display the document you selected.
Cisco Unified Communications Manager Denial of Service Vulnerability
21/Aug/2024
New
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
21/Aug/2024
New
Cisco Unified Communications Products Remote Code Execution Vulnerability
24/Jan/2024
Multiple Cisco Unified Communications Products Unauthenticated API High CPU Utilization Denial of Service Vulnerability
04/Oct/2023
Cisco Unified Communications Products Privilege Escalation Vulnerability
30/Aug/2023
Cisco Unified Communications Manager SQL Injection Vulnerability
16/Aug/2023
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
16/Aug/2023
Cisco Unified Communications Manager Denial of Service Vulnerability
07/Jun/2023
Cisco Unified Communications Manager SQL Injection Vulnerability
18/Jan/2023
Cisco Unified Communications Manager Arbitrary File Deletion Vulnerability
03/Aug/2022
Cisco Unified Communications Products Arbitrary File Read Vulnerability
06/Jul/2022
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
06/Jul/2022
Cisco Unified Communications Products Timing Attack Vulnerability
06/Jul/2022
Cisco Unified Communications Manager Arbitrary File Read Vulnerability
06/Jul/2022
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
06/Jul/2022
Cisco Unified Communications Products Access Control Vulnerability
06/Jul/2022
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
20/Apr/2022
Cisco Unified Communications Products Cross-Site Request Forgery Vulnerability
20/Apr/2022
Cisco Unified Communications Products Denial of Service Vulnerability
20/Apr/2022
Cisco Unified Communications Products Arbitrary File Read Vulnerability
20/Apr/2022
Cisco Unified Communications Products Arbitrary File Write Vulnerability
20/Apr/2022
Vulnerability in Spring Framework Affecting Cisco Products: March 2022
01/Apr/2022
Cisco Unified Communications Products Cross-Site Request Forgery Vulnerability
03/Nov/2021
Cisco Unified Communications Products Path Traversal Vulnerability
03/Nov/2021
Cisco Unified Communications Products Remote Code Execution Vulnerability
07/Apr/2021
Cisco Unified Communications Products Cross-Site Scripting Vulnerabilities
07/Apr/2021
Cisco Unified Communications Manager Self Care Portal Authorization Bypass Vulnerability
07/Apr/2021
Cisco Unified Communications Manager Information Disclosure Vulnerability
07/Apr/2021
Cisco Unified Communications Products Vulnerabilities
20/Jan/2021
Cisco Unified Communications Products Information Disclosure Vulnerability
13/Jan/2021
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
05/Aug/2020
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
05/Aug/2020
Cisco Unified Communications Manager Stored Cross-Site Scripting Vulnerability
01/Jul/2020
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
01/Jul/2020
Cisco Unified Communications Manager SQL Injection Vulnerability
03/May/2020
Cisco Unified Communications Manager Information Disclosure Vulnerability
03/May/2020
Cisco Unified Communications Manager Cross-Site Request Forgery Vulnerability
03/May/2020
Cisco Unified Communications Manager Path Traversal Vulnerability
15/Apr/2020
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
02/Oct/2019
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
02/Oct/2019
Cisco Unified Communications Manager XML External Expansion Vulnerability
02/Oct/2019
Cisco Unified Communications Manager SQL Injection Vulnerability
02/Oct/2019
Multiple Cisco Unified Communications Products Cross-Site Scripting Vulnerability
02/Oct/2019
Cisco Unified Communications Manager Security Bypass Vulnerability
02/Oct/2019
Multiple Cisco Unified Communications Products Cross-Site Request Forgery Vulnerability
02/Oct/2019
Cisco Unified Communications Manager Session Initiation Protocol Denial of Service Vulnerability
03/Jul/2019
Cisco Unified Communications Manager Denial of Service Vulnerability
17/Apr/2019
Cisco Unified Communications Manager Digest Credentials Disclosure Vulnerability
09/Jan/2019
Multiple Cisco Unified Communications Products Open Redirect Vulnerability
03/Oct/2018
Cisco Unified Communications Manager Reflected Cross-Site Scripting Vulnerability
01/Aug/2018
Cisco Unified Communications Manager Cross-Frame Scripting Vulnerability
06/Jun/2018
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
06/Jun/2018
Multiple Cisco Products Disk Utilization Denial of Service Vulnerability
06/Jun/2018
Cisco Unified Communications Manager and Cisco Unified Presence Cross-Site Scripting Vulnerability
16/May/2018
Cisco Unified Communications Manager LDAP Information Disclosure Vulnerability
18/Apr/2018
Cisco Unified Communications Manager HTTP Interface Information Disclosure Vulnerability
18/Apr/2018
Multiple Cisco Unified Communications Products Reflected Cross-Site Scripting Vulnerability
21/Feb/2018
Cisco Unified Communications Manager Information Disclosure Vulnerability
07/Feb/2018
Cisco Unified Communications Manager Information Disclosure Vulnerability
07/Feb/2018
Cisco Unified Communications Manager SQL Injection Vulnerability
07/Feb/2018
Cisco Unified Communications Manager Information Disclosure Vulnerability
17/Jan/2018
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
10/Jan/2018
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
29/Nov/2017
Cisco Unified Communications Manager SQL Injection Vulnerability
15/Nov/2017
Cisco Voice Operating System-Based Products Unauthorized Access Vulnerability
15/Nov/2017
Cisco Unified Communications Manager Cross-Frame Scripting Vulnerability
04/Oct/2017
Cisco Unified Communications Manager Trust Verification Service Denial of Service Vulnerability
06/Sep/2017
Cisco Unified Communications Manager Horizontal Privilege Escalation Vulnerability
16/Aug/2017
Cisco Unified Communications Manager Directory Traversal Vulnerability
02/Aug/2017
Cisco Unified Communications Manager SQL Injection Vulnerability
02/Aug/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
17/May/2017
Cisco Unified Communications Manager Denial of Service Vulnerability
19/Apr/2017
Cisco Unified Communications Manager SQL Injection Vulnerability
05/Apr/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
05/Apr/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
15/Mar/2017
Cisco Unified Communications Manager Web Interface Cross-Site Scripting Vulnerability
15/Mar/2017
Cisco Unified Communications Manager Cross-Site Request Forgery Vulnerability
15/Mar/2017
Cisco Unified Communications Manager Information Disclosure Vulnerability
15/Feb/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
15/Feb/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
15/Feb/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
15/Feb/2017
Cisco Unified Communications Manager Web Interface Cross-Site Scripting Vulnerability
15/Feb/2017
Cisco Unified Communications Manager Cross-Site Scripting Vulnerability
18/Jan/2017
Cisco Unified Communications Manager Web Interface Cross-Site Scripting Vulnerability
18/Jan/2017
Cisco Unified Communications Manager Administration Page Cross-Site Scripting Vulnerability
07/Dec/2016
Cisco Unified Communications Manager Unified Reporting Upload Tool Directory Traversal Vulnerability
07/Dec/2016
Cisco Unified Communications Manager Web Interface Cross-Site Scripting Vulnerability
16/Nov/2016
Cisco Unified Communications Manager iFrame Data Clickjacking Vulnerability
12/Oct/2016
Cisco Unified Communications Manager Information Disclosure Vulnerability
17/Aug/2016
Multiple Cisco Products libSRTP Denial of Service Vulnerability
20/Apr/2016
Cisco Unified Communications Manager Information Disclosure Vulnerability
08/Feb/2016
Cisco Unified Products Information Disclosure Vulnerability
08/Feb/2016
Cisco Unified Communications Manager SQL Injection Vulnerability
03/Feb/2016
Cisco Unified Communications Manager SQL Injection Vulnerability
05/Jan/2016
Cisco Unified Communications Manager Web Applications Identity Management Subsystem Denial of Service Vulnerability
15/Dec/2015
Cisco Unified Communications Manager Web Management Interface Cross-Site Scripting Filter Bypass Vulnerability
14/Dec/2015
Multiple Vulnerabilities in OpenSSL (December 2015) Affecting Cisco Products
04/Dec/2015
Cisco Unified Communications Manager Remote Blind SQL Injection Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Command Injection Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Privilege Escalation Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Blind SQL Injection Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Privilege Escalation Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Privilege Escalation Vulnerability
08/Oct/2015
OpenSSL RSA Temporary Key Cryptographic Downgrade Vulnerability
08/Oct/2015
Cisco Unified Call Manager Arbitrary File Retrieval Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Interactive Voice Response Interface SQL Injection Vulnerability
08/Oct/2015
Cisco Unified Communications Manager SQL Injection Vulnerability
08/Oct/2015
Cisco Unified Communications Manager root Shell Access Local Privilege Escalation Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Multiple Vulnerabilities
08/Oct/2015
Cisco IP Phone 7861 Denial of Service Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Denial of Service Vulnerability
08/Oct/2015
Cisco Unified Communications Manager ccmivr Page Cross-Site Scripting Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Prime Collaboration Deployment Information Disclosure Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Potential SQL Injection Vulnerability
08/Oct/2015
Sudo sudoedit Local Command Privilege Escalation Vulnerability
08/Oct/2015
Network Time Protocol Package Remote Message Loop Denial of Service Vulnerability
08/Oct/2015
Cisco CallManager Web Interface Input Validation Bypass Vulnerability
08/Oct/2015
Cisco Unified CallManager and Unified Presence Server ICMP Echo Request Handling Denial of Service Vulnerability
08/Oct/2015
OpenSSL RSA Signature Forgery Vulnerability
08/Oct/2015
Cisco CallManager Administration and User Options Web Interfaces Cross-Site Scripting Vulnerability
08/Oct/2015
Cisco Unified Communications Manager Unified Serviceability CSRF Vulnerability
07/Oct/2015
Cisco Unified Communications Manager Authentication Denial of Service Vulnerability
07/Oct/2015
Cisco Unified Communications Manager Device Registration SQL Injection Vulnerability
07/Oct/2015
Cisco IOS Software and Cisco Unified Communications Manager Session Initiation Protocol Packet Processing Memory Leak Vulnerability
07/Oct/2015
Transport Layer Security Renegotiation Remote Man-in-the-Middle Attack Vulnerability
07/Oct/2015
Cisco Unified Communications Manager Stack Trace Web Disclosure Vulnerability
03/Oct/2015
Cisco Unified Communications Manager User Web Dialer Cross-Site Request Forgery Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Web Page Cross-Site Request Forgery Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Administrative Web Interface Directory Traversal Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Denial of Service Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Arbitrary File Read/Write Vulnerability
03/Oct/2015
Cisco Enterprise License Manager Path Traversal Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Sensitive Information Disclosure Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Role Bypass Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Operating System-Level Privilege Escalation Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Unauthenticated log4jinit Access Vulnerability
03/Oct/2015
Cisco Unified Communications Manager IPMA Cross-Site Scripting Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Arbitrary File Read Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Enterprise Mobility Application Blind SQL Injection Vulnerability
03/Oct/2015
Cisco Unified Communications Manager IPMA Blind SQL Injection Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CMIVR Blind SQL Injection Vulnerability
03/Oct/2015
Cisco Unified Communications Manager IPMA Reflected Cross-Site Scripting Vulnerability
03/Oct/2015
Cisco Unified Communications Manager WAR File Availability Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Real Time Monitoring Tool Information Disclosure Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Enterprise License Manager Information Disclosure Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Java Class File Availability Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CAPF Unauthenticated Blind SQL Injection Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CAPF Unauthenticated Device Information Update Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CAPF CSR Arbitrary File Read/Write Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CAPF Certificate Import Arbitrary File Read/Write Vulnerability
03/Oct/2015
Cisco Unified Communications Manager CAPF CLI Command Injection Vulnerability
03/Oct/2015
Cisco Unified Communications Manager OS Administration CSRF Vulnerability
03/Oct/2015
Cisco Unified Communications Manager Arbitrary File Read Vulnerability
02/Oct/2015
Cisco Unified Communications Manager CDR Management Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Sensitive Information Disclosure Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Java Interface SQL Injection Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Real-Time Monitoring Tool Multiple Vulnerabilities
02/Oct/2015
Cisco Unified Communications Manager DNA Path Traversal Vulnerability
02/Oct/2015
Cisco Unified Communications Manager DNA Path Traversal Vulnerability
02/Oct/2015
Cisco Unified Communications Manager DNA Cross-Site Scripting Vulnerability
02/Oct/2015
Cisco Unified Communications Manager DNA Arbitrary File Upload Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Real-Time Monitoring Tool Path Traversal Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Java Interface SQL Injection Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Concurrent Login Vulnerability
02/Oct/2015
Cisco Unified Communications Manager SIP Subsystem Vulnerability
02/Oct/2015
Cisco Unified Communications Manager CTIManager Vulnerability
02/Oct/2015
Cisco Unified Communications Manager and Cisco Unified Presence Server SQL Injection Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Cross-Site Redirection Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Reports Interface Reflected Cross-Site Scripting Vulnerability
02/Oct/2015
Cisco Unified Communications Manager SQL Injection Vulnerability
02/Oct/2015
Cisco Unified Communications Manager DNA Interface Reflected Cross-Site Scripting Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Admin Interface Reflected Cross-Site Scripting Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Service Interface Reflected Cross-Site Scripting Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Remote Mobile Access Subsystem Vulnerability
02/Oct/2015
Cisco Unified Communications Manager Real-Time Monitoring Tool File Disclosure Vulnerability
02/Oct/2015
XSS and SQL Injection in Cisco CallManager/Unified Communications Manager Logon Page
10/Jul/2015
Cisco Unified Communications Manager Denial of Service Vulnerabilities
10/Jul/2015
Cisco Unified Communications Manager Denial of Service Vulnerabilities
10/Jul/2015
Cisco Unified Communications Manager Session Initiation Protocol Denial of Service Vulnerabilities
10/Jul/2015
Open Query Interface in Cisco Unified Communications Manager and Cisco Unified Presence Server
10/Jul/2015
Multiple Vulnerabilities in Cisco Unified Communications Manager
10/Jul/2015
Cisco Unified Communications Manager Denial of Service Vulnerabilities
10/Jul/2015
Cisco Unified Communications Manager Memory Leak Vulnerability
10/Jul/2015
Cisco Unified Communications Manager Session Initiation Protocol Denial of Service Vulnerability
10/Jul/2015
Cisco IOS Software Session Initiation Protocol Denial of Service Vulnerability
10/Jul/2015
Multiple Vulnerabilities in Cisco Unified Communications Manager
10/Jul/2015
OpenSSL Alternative Chains Certificate Forgery Vulnerability (July 2015) Affecting Cisco Products
10/Jul/2015
Multiple Vulnerabilities in OpenSSL (June 2015) Affecting Cisco Products
12/Jun/2015
Multiple Vulnerabilities in OpenSSL (January 2015) Affecting Cisco Products
10/Mar/2015
Multiple Vulnerabilities in ntpd Affecting Cisco Products
22/Dec/2014
Cisco Unified Contact Center Express Directory Traversal Vulnerability
09/Nov/2014
Cisco Unified Communications Manager Directory Traversal Vulnerability
09/Nov/2014
Multiple Vulnerabilities in Cisco Unified Communications Manager
09/Nov/2014
Cisco Unified Communications Manager CTL Provider Heap Overflow
09/Nov/2014
Cisco Unified Communications Manager Denial of Service Vulnerabilities
09/Nov/2014
GNU Bash Environment Variable Command Injection Vulnerability
26/Sep/2014
Cisco Unified Communications Manager Skinny Client Control Protocol Vulnerabilities
09/Aug/2014
Cisco Unified Communications Manager Multiple Denial of Service Vulnerabilities
31/May/2014
Cisco Unified Communications Manager Overflow Vulnerabilities
10/Dec/2011
Vulnerability In Crypto Library
10/Dec/2011
Crafted ICMP Messages Can Cause Denial of Service
10/Dec/2011
Cisco OpenSSL Implementation Vulnerability
10/Dec/2011
Voice Product Vulnerabilities on IBM Servers
10/Dec/2011
Vulnerabilities in H.323 Message Processing
10/Dec/2011
Microsoft SQL Server 2000 Vulnerabilities in Cisco Products - MS02-061
10/Dec/2011
Microsoft Windows SMB Denial of Service Vulnerabilities in Cisco Products - MS02-045
10/Dec/2011
Microsoft IIS Vulnerabilities in Cisco Products - MS02-018
10/Dec/2011
LDAP Connection Leak in CTI when User Authentication Fails
10/Dec/2011
"Code Red" Worm - Customer Impact
10/Dec/2011
Support Documentation
All Support Documentation for this Series
Security Notices
Bulletins
Field Notices
Customers Also Viewed