CVE-2010-1570: High severity Cisco Unified Contact Center Express vulnerability

Published Jun 10, 2010
·
Updated

The computer telephony integration (CTI) server component in Cisco Unified Contact Center Express (UCCX) 7.0 before 7.0(1)SR4 and 7.0(2), 6.0 before 6.0(1)SR1, and 5.0 before 5.0(2)SR3 allows remote attackers to cause a denial of service (CTI server and Node Manager failure) via a malformed CTI message.

Affected Software

9 affected components
Cisco Unified Contact Center Express=5.0
Cisco Unified Contact Center Express=6.0
Cisco Unified Contact Center Express=7.0
Cisco Customer Response Solution=5.0
Cisco Customer Response Solution=6.0
Cisco Customer Response Solution=7.0
Cisco Unified IP Interactive Voice Response=5.0
Cisco Unified IP Interactive Voice Response=6.0
Cisco Unified IP Interactive Voice Response=7.0

Event History

Jun 10, 2010
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:30 AM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2010-1570?

CVE-2010-1570 is classified as a denial of service vulnerability affecting multiple Cisco Unified Contact Center Express and Customer Response Solution versions.

2

How do I fix CVE-2010-1570?

To fix CVE-2010-1570, upgrade to the appropriate patched version of Cisco Unified Contact Center Express or Customer Response Solution as specified in the vendor's advisory.

3

What systems are affected by CVE-2010-1570?

CVE-2010-1570 affects Cisco Unified Contact Center Express versions 5.0, 6.0, and 7.0, as well as Cisco Customer Response Solution and Cisco IP Interactive Voice Response of similar versions.

4

What types of attacks does CVE-2010-1570 enable?

CVE-2010-1570 allows remote attackers to launch denial of service attacks affecting the CTI server and Node Manager.

5

When was CVE-2010-1570 reported?

CVE-2010-1570 was reported on May 10, 2010.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203