CVE-2010-1570: High severity Cisco Unified Contact Center Express vulnerability
The computer telephony integration (CTI) server component in Cisco Unified Contact Center Express (UCCX) 7.0 before 7.0(1)SR4 and 7.0(2), 6.0 before 6.0(1)SR1, and 5.0 before 5.0(2)SR3 allows remote attackers to cause a denial of service (CTI server and Node Manager failure) via a malformed CTI message.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1570?
CVE-2010-1570 is classified as a denial of service vulnerability affecting multiple Cisco Unified Contact Center Express and Customer Response Solution versions.
How do I fix CVE-2010-1570?
To fix CVE-2010-1570, upgrade to the appropriate patched version of Cisco Unified Contact Center Express or Customer Response Solution as specified in the vendor's advisory.
What systems are affected by CVE-2010-1570?
CVE-2010-1570 affects Cisco Unified Contact Center Express versions 5.0, 6.0, and 7.0, as well as Cisco Customer Response Solution and Cisco IP Interactive Voice Response of similar versions.
What types of attacks does CVE-2010-1570 enable?
CVE-2010-1570 allows remote attackers to launch denial of service attacks affecting the CTI server and Node Manager.
When was CVE-2010-1570 reported?
CVE-2010-1570 was reported on May 10, 2010.