CVE-2015-0615
Severity CVSS v4.0:
Pending analysis
Type:
CWE-19
Data Handling
Publication date:
03/04/2015
Last modified:
12/04/2025
Description
The call-handling implementation in Cisco Unity Connection 8.5 before 8.5(1)SU7, 8.6 before 8.6(2a)SU4, 9.x before 9.1(2)SU2, and 10.0 before 10.0(1)SU1, when SIP trunk integration is enabled, allows remote attackers to cause a denial of service (port consumption) by improperly terminating SIP sessions, aka Bug ID CSCul28089.
Impact
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:cisco:unity_connection:8.5\(1\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su3:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su4:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su5:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5\(1\)su6:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.5_base:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(1\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(1a\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(2\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(2a\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:unity_connection:8.6\(2a\)su3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



