Cisco Unified Communications Manager(CUCM,Unified CM,CallManager)是美国思科(Cisco)公司的一款统一通信系统中的呼叫处理组件。该组件提供了一种可扩展、可分布和高可用的企业IP电话呼叫处理解决方案。 Cisco Unified Communications Manager存在跨站脚本漏洞,该漏洞源于用户提供的数据未充分清理。远程攻击者利用该漏洞诱骗受害者跟踪特制链接,并在易受攻击的用户浏览器中执行任意 HTML 和脚本代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Unified Communications Manager | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-20813 | 9.0 CRITICAL | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
| CVE-2022-20812 | 9.0 CRITICAL | Cisco Expressway Series and Cisco TelePresence Video Communication Server Vulnerabilities |
| CVE-2022-20808 | 7.7 HIGH | Cisco Smart Software Manager On-Prem Denial of Service Vulnerability |
| CVE-2022-20859 | 6.5 MEDIUM | Cisco Unified Communications Products Access Control Vulnerability |
| CVE-2022-20791 | 6.5 MEDIUM | Cisco Unified Communications Products Arbitrary File Read Vulnerability |
| CVE-2022-20800 | 6.1 MEDIUM | Cisco Unified Communications Products Cross-Site Scripting Vulnerability |
| CVE-2022-20752 | 5.3 MEDIUM | Cisco Unified Communications Products Timing Attack Vulnerability |
| CVE-2022-20768 | 4.9 MEDIUM | Cisco TelePresence Collaboration Endpoint and RoomOS Software Information Disclosure Vulne |
| CVE-2022-20862 | 4.3 MEDIUM | Cisco Unified Communications Manager Arbitrary File Read Vulnerability |
No comments yet