Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SIP packets, which allows remote attackers to cause a denial of service (memory and CPU consumption, and service disruption) via a flood of UDP packets to port 5060, aka Bug ID CSCub35869.
2013-08-25T03:27:32.673
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:N/I:N/A:C
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | unified_communications_manager | 9.0\(1\) | Yes |
Application | cisco | unified_communications_manager | 8.5 | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\) | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\)su1 | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\)su2 | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\)su3 | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\)su4 | Yes |
Application | cisco | unified_communications_manager | 8.5\(1\)su5 | Yes |
Application | cisco | unified_communications_manager | 8.6 | Yes |
Application | cisco | unified_communications_manager | 8.6\(1\) | Yes |
Application | cisco | unified_communications_manager | 8.6\(1a\) | Yes |
Application | cisco | unified_communications_manager | 8.6\(2\) | Yes |
Application | cisco | unified_communications_manager | 8.6\(2a\) | Yes |
Application | cisco | unified_communications_manager | 8.6\(2a\)su1 | Yes |
Application | cisco | unified_communications_manager | 8.6\(2a\)su2 | Yes |