Skip to main content

CVE-2024-20253 Cisco Unified Communications Products Remote Code Execution Vulnerability


CarySun
Forum|alt.badge.img+7

A flaw in some Cisco Unified Communications and Contact Center Solutions products could allow an unauthenticated, remote attacker to run arbitrary code on a vulnerable device.

If your customers are using the products below, Please update the software ASAP.

  • Unified Intelligence Center
  • Unified Contact Center Management Portal
  • Unified Contact Center Domain Manager
  • Customer Collaboration Portal
  • Customer Voice Portal
  • Emergency Responder
  • Finesse
  • Hosted Collaboration Mediation Fulfillment
  • Prime Collaboration Deployment
  • Prime License Manager
  • Remote Expert Mobile

Please check the detailed information in the Cisco Security Advisory link.

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cucm-rce-bWNzQcUm

 

1 comment

Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8492 comments
  • January 25, 2024

It is sad to see quite a few CVEs to start the 2024 year.  Thanks for sharing, Cary.


Comment