VendorsCiscounity_connectionany version
Vulnerabilities

Cisco Unity Connection any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

34CVEs
CVE-2021-44228
Apache Log4j2 JNDI features do not protect against attacker controlled LDAP and other JNDI related endpoints
Published 2021-12-10 · Analyzed
10.0KEV3 PoCEPSS 1.000
CVE-2017-12337
A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an unauthenticated, remote attacker to gain unauthorized, elevated access to an affected device. The vulnerability occurs when a refresh upgrade (RU) or Prime Collaboration Deployment (PCD) migration is performed on an affected device. When a refresh upgrade or PCD migration is completed successfully, an engineering flag remains enabled and could allow root access to the device with a known password. If the vulnerable device is subsequently upgraded using the standard upgrade method to an Engineering Special Release, service update, or a new major release of the affected product, this vulnerability is remediated by that action. Note: Engineering Special Releases that are installed as COP files, as opposed to the standard upgrade method, do not remediate this vulnerability. An attacker who can access an affected device over SFTP while it is in a vulnerable state could gain root access to the device. This access could allow the attacker to compromise the affected system completely. Cisco Bug IDs: CSCvg22923, CSCvg55112, CSCvg55128, CSCvg55145, CSCvg58619, CSCvg64453, CSCvg64456, CSCvg64464, CSCvg64475, CSCvg68797.
Published 2017-11-16 · Modified
10.0EPSS 0.064
CVE-2024-20253
A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to the improper processing of user-provided data that is being read into memory. An attacker could exploit this vulnerability by sending a crafted message to a listening port of an affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privileges of the web services user. With access to the underlying operating system, the attacker could also establish root access on the affected device.
Published 2024-01-26 · Modified
10.0EPSS 0.024
CVE-2026-20045
Cisco Unified Communications Products Remote Code Execution Vulnerability
Published 2026-01-21 · Analyzed
9.8KEVEPSS 0.045
CVE-2024-20272
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an unauthenticated, remote attacker to upload arbitrary files to an affected system and execute commands on the underlying operating system. This vulnerability is due to a lack of authentication in a specific API and improper validation of user-supplied data. An attacker could exploit this vulnerability by uploading arbitrary files to an affected system. A successful exploit could allow the attacker to store malicious files on the system, execute arbitrary commands on the operating system, and elevate privileges to root.
Published 2024-01-17 · Modified
9.8EPSS 0.016
CVE-2021-1362
Cisco Unified Communications Products Remote Code Execution Vulnerability
Published 2021-04-08 · Modified
9.0EPSS 0.027
CVE-2012-0366
Cisco Unity Connection before 7.1.3b(Su2) allows remote authenticated users to change the administrative password by leveraging the Help Desk Administrator role, aka Bug ID CSCtd45141.
Published 2012-03-01 · Modified
9.0EPSS 0.023
CVE-2022-20859
Cisco Unified Communications Products Access Control Vulnerability
Published 2022-07-06 · Modified
9.0EPSS 0.013
CVE-2026-20034
Cisco Unity Connection Remote Code Execution Vulnerability
Published 2026-05-06 · Analyzed
8.8EPSS 0.007
CVE-2012-0367
Cisco Unity Connection before 7.1.5b(Su5), 8.0 and 8.5 before 8.5.1(Su3), and 8.6 before 8.6.2 allows remote attackers to cause a denial of service (services crash) via a series of crafted TCP segments, aka Bug ID CSCtq67899.
Published 2012-03-01 · Modified
7.8EPSS 0.026
CVE-2017-6779
Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial of service (DoS) condition. The vulnerability occurs because a certain system log file does not have a maximum size restriction. Therefore, the file is allowed to consume the majority of available disk space on the appliance. An attacker could exploit this vulnerability by sending crafted remote connection requests to the appliance. Successful exploitation could allow the attacker to increase the size of a system log file so that it consumes most of the disk space. The lack of available disk space could lead to a DoS condition in which the application functions could operate abnormally, making the appliance unstable. This vulnerability affects the following Cisco Voice Operating System (VOS)-based products: Emergency Responder, Finesse, Hosted Collaboration Mediation Fulfillment, MediaSense, Prime License Manager, SocialMiner, Unified Communications Manager (UCM), Unified Communications Manager IM and Presence Service (IM&P - earlier releases were known as Cisco Unified Presence), Unified Communication Manager Session Management Edition (SME), Unified Contact Center Express (UCCx), Unified Intelligence Center (UIC), Unity Connection, Virtualized Voice Browser. This vulnerability also affects Prime Collaboration Assurance and Prime Collaboration Provisioning. Cisco Bug IDs: CSCvd10872, CSCvf64322, CSCvf64332, CSCvi29538, CSCvi29543, CSCvi29544, CSCvi29546, CSCvi29556, CSCvi29571, CSCvi31738, CSCvi31741, CSCvi31762, CSCvi31807, CSCvi31818, CSCvi31823.
Published 2018-06-07 · Modified
7.8EPSS 0.020
CVE-2026-20035
Cisco Unity Connection Server-Side Request Forgery Vulnerability
Published 2026-05-06 · Analyzed
7.2EPSS 0.003
CVE-2014-0664
The server in Cisco Unity Connection allows remote authenticated users to cause a denial of service (CPU consumption) via unspecified IMAP commands, aka Bug ID CSCul49976.
Published 2014-01-10 · Modified
6.8EPSS 0.028
CVE-2020-3130
Cisco Unity Connection Directory Traversal Vulnerability
Published 2020-09-23 · Modified
6.5EPSS 0.018
CVE-2021-1226
Cisco Unified Communications Products Information Disclosure Vulnerability
Published 2021-01-13 · Modified
6.5EPSS 0.009
CVE-2026-20078
Cisco Unity Connection Arbitrary File Download Vulnerability
Published 2026-04-15 · Analyzed
6.5EPSS 0.004
CVE-2026-20081
Cisco Unity Connection Arbitrary File Download Vulnerability
Published 2026-04-15 · Analyzed
6.5EPSS 0.004
CVE-2026-20061
Cisco Unity Connection SQL Injection Vulnerability
Published 2026-04-15 · Analyzed
6.5EPSS 0.002
CVE-2022-20788
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
Published 2022-04-21 · Modified
6.1EPSS 0.008
CVE-2021-1409
Cisco Unified Communications Products Cross-Site Scripting Vulnerabilities
Published 2021-04-08 · Modified
6.1EPSS 0.008
CVE-2021-1380
Cisco Unified Communications Products Cross-Site Scripting Vulnerabilities
Published 2021-04-08 · Modified
6.1EPSS 0.008
CVE-2020-3282
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
Published 2020-07-02 · Modified
6.1EPSS 0.008
CVE-2022-20800
Cisco Unified Communications Products Cross-Site Scripting Vulnerability
Published 2022-07-06 · Modified
6.1EPSS 0.008
CVE-2026-20059
Cisco Unity Connection Reflected Cross-Site Scripting Vulnerability
Published 2026-04-15 · Analyzed
6.1EPSS 0.002
CVE-2018-0203
A vulnerability in the SMTP relay of Cisco Unity Connection could allow an unauthenticated, remote attacker to send unsolicited email messages, aka a Mail Relay Vulnerability. The vulnerability is due to improper handling of domain information in the affected software. An unauthenticated, remote attacker could exploit this vulnerability by sending crafted requests to the targeted application. A successful exploit could allow the attacker to send email messages to arbitrary addresses. Cisco Bug IDs: CSCvg62215.
Published 2018-02-22 · Modified
5.3EPSS 0.016
CVE-2022-20752
Cisco Unified Communications Products Timing Attack Vulnerability
Published 2022-07-06 · Modified
5.3EPSS 0.010
CVE-2020-3129
Cisco Unity Connection Stored Cross-Site Scripting Vulnerability
Published 2020-01-26 · Modified
4.8EPSS 0.006
CVE-2024-20305
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.
Published 2024-01-26 · Modified
4.8EPSS 0.004
CVE-2026-20060
Cisco Unity Connection Open Redirect Vulnerability
Published 2026-04-15 · Analyzed
4.7EPSS 0.002
CVE-2021-34701
Cisco Unified Communications Products Path Traversal Vulnerability
Published 2021-11-04 · Modified
4.3EPSS 0.016
CVE-2014-2125
Cross-site scripting (XSS) vulnerability in the Web Inbox in Cisco Unity Connection 8.6(2a)SU3 and earlier allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCui33028.
Published 2014-04-02 · Modified
4.3EPSS 0.011
CVE-2014-7988
The Unified Messaging Service (UMS) in Cisco Unity Connection 10.5 and earlier allows remote authenticated users to obtain sensitive information by reading log files, aka Bug ID CSCur06493.
Published 2014-11-07 · Modified
4.0EPSS 0.016
CVE-2014-2145
Directory traversal vulnerability in the messaging API in Cisco Unity Connection allows remote authenticated users to read arbitrary files via vectors related to unenforced access constraints for .wav files and the audio/x-wav MIME type, aka Bug ID CSCun91071.
Published 2014-04-05 · Modified
4.0EPSS 0.016
CVE-2013-5534
Directory traversal vulnerability in the attachment service in the Voice Message Web Service (aka VMWS or Cisco Unity Web Service) in Cisco Unity Connection allows remote authenticated users to create files, and consequently execute arbitrary JSP code, via a crafted pathname for a file that is not a valid audio file, aka Bug ID CSCuj22948.
Published 2013-10-19 · Modified
4.0EPSS 0.015