PT-2015-7244 · Cisco · Cisco Unified Communications Domain Manager
Published
2015-12-14
·
Updated
2016-12-07
·
CVE-2015-6422
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco Unified Communications Domain Manager version 10.6(1)
Description
The self-service application in Cisco Unified Communications Domain Manager allows remote authenticated users to cause a denial of service, resulting in a subapplication outage, via malformed requests.
Recommendations
For Cisco Unified Communications Domain Manager version 10.6(1), update to a version that fixes the issue, as the current version allows for a denial of service attack via malformed requests. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Unified Communications Domain Manager