CVE-2010-0592: High severity Cisco Unified Communications Manager vulnerability
The CTI Manager service in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 4.x before 4.3(2)sr1a, 6.x before 6.1(3), 7.0x before 7.0(2), 7.1x before 7.1(2), and 8.x before 8.0(1) allows remote attackers to cause a denial of service (service failure) via a malformed message, aka Bug ID CSCsu31800.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0592?
CVE-2010-0592 is classified as a denial of service vulnerability that can severely impact the functionality of Cisco Unified Communications Manager.
How do I fix CVE-2010-0592?
To mitigate CVE-2010-0592, upgrade Cisco Unified Communications Manager to versions 4.3(2)sr1a, 6.1(3), 7.0(2), 7.1(2), or 8.0(1) or later.
What versions of Cisco Unified Communications Manager are affected by CVE-2010-0592?
CVE-2010-0592 affects multiple versions including 4.x before 4.3(2)sr1a, 6.x before 6.1(3), 7.0x before 7.0(2), and 8.x before 8.0(1).
Can CVE-2010-0592 be exploited remotely?
Yes, CVE-2010-0592 can be exploited remotely by sending a malformed message to the CTI Manager service.
What impact does CVE-2010-0592 have on the system?
Exploitation of CVE-2010-0592 can lead to a denial of service, causing the affected Cisco Unified Communications Manager to stop functioning properly.