PT-2010-3241 · Cisco · Cisco Unified Contact Center Express
Published
2010-06-10
·
Updated
2017-08-17
·
CVE-2010-1570
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Unified Contact Center Express (UCCX) versions 5.0 through 5.0(2)SR2
Cisco Unified Contact Center Express (UCCX) versions 6.0 through 6.0(1)SR0
Cisco Unified Contact Center Express (UCCX) versions 7.0 through 7.0(1)SR3 and 7.0(2) before 7.0(2) patch
Description
The issue allows remote attackers to cause a denial of service, resulting in the failure of the CTI server and Node Manager, via a malformed CTI message.
Recommendations
For Cisco Unified Contact Center Express (UCCX) versions 5.0 through 5.0(2)SR2, update to version 5.0(2)SR3 or later.
For Cisco Unified Contact Center Express (UCCX) versions 6.0 through 6.0(1)SR0, update to version 6.0(1)SR1 or later.
For Cisco Unified Contact Center Express (UCCX) versions 7.0 through 7.0(1)SR3, update to 7.0(1)SR4 or later.
For Cisco Unified Contact Center Express (UCCX) version 7.0(2) before 7.0(2) patch, apply the patch for version 7.0(2).
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Unified Contact Center Express