← Back

Unified Presence

unified_presence

Vendor: Cisco • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cisco
2Unified Communications Manager
Unified Presence
Apr 29, 2026
Aug 22, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
Memory leak in Cisco Unified Communications Manager IM and Presence Service before 8.6(5)SU1 and 9.x before 9.1(2), and Cisco Unified Presence, allows remote attackers to cause a denial of service (memory and CPU consump...Show more
Memory leak in Cisco Unified Communications Manager IM and Presence Service before 8.6(5)SU1 and 9.x before 9.1(2), and Cisco Unified Presence, allows remote attackers to cause a denial of service (memory and CPU consumption) by making many TCP connections to port (1) 5060 or (2) 5061, aka Bug ID CSCud84959.Show less
1Cisco
1Unified Presence
Apr 29, 2026
Apr 16, 2013
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The XML parser in the server in Cisco Unified Presence (CUP) allows remote authenticated users to cause a denial of service (jabberd daemon crash) via crafted XML content in an XMPP message, aka Bug ID CSCue13912.
1Cisco
2Jabber Extensible Communications Platform
Unified Presence
Apr 29, 2026
Sep 12, 2012
N/A· v4
N/A· v3
7.8 HIGH· v2
Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) before 5.3 allow remote attackers to cause a denial of service (process crash) via a crafted XMPP stream header, a...Show more
Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) before 5.3 allow remote attackers to cause a denial of service (process crash) via a crafted XMPP stream header, aka Bug ID CSCtu32832.Show less
1Cisco
1Unified Presence
Apr 29, 2026
Oct 6, 2011
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Cisco Unified Presence before 8.5(4) does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption, and process crash) via a crafted XM...Show more
Cisco Unified Presence before 8.5(4) does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption, and process crash) via a crafted XML document containing a large number of nested entity references, aka Bug IDs CSCtq89842 and CSCtq88547, a similar issue to CVE-2003-1564.Show less
1Cisco
1Unified Presence
Apr 23, 2026
May 16, 2008
N/A· v4
N/A· v3
7.8 HIGH· v2
The SIP Proxy (SIPD) service in Cisco Unified Presence before 6.0(3) allows remote attackers to cause a denial of service (core dump and service interruption) via a TCP port scan, aka Bug ID CSCsj64533.
1Cisco
1Unified Presence
Apr 23, 2026
May 16, 2008
N/A· v4
N/A· v3
7.8 HIGH· v2
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via an unspecified "stress test," aka Bug ID CSCsh20972.
1Cisco
2Unified Presence
Unified Presence Server
Apr 23, 2026
May 16, 2008
N/A· v4
N/A· v3
7.8 HIGH· v2
The Presence Engine (PE) service in Cisco Unified Presence before 6.0(1) allows remote attackers to cause a denial of service (core dump and service interruption) via malformed packets, aka Bug ID CSCsh50164.
1Cisco
4Emergency Responder
Mobility ManagerUnified Communications Manager+1 more
Apr 23, 2026
Apr 4, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
The Disaster Recovery Framework (DRF) master server in Cisco Unified Communications products, including Unified Communications Manager (CUCM) 5.x and 6.x, Unified Presence 1.x and 6.x, Emergency Responder 2.x, and Mobili...Show more
The Disaster Recovery Framework (DRF) master server in Cisco Unified Communications products, including Unified Communications Manager (CUCM) 5.x and 6.x, Unified Presence 1.x and 6.x, Emergency Responder 2.x, and Mobility Manager 2.x, does not require authentication for requests received from the network, which allows remote attackers to execute arbitrary code via unspecified vectors.Show less