CVE-2015-0616 is a denial-of-service vulnerability affecting Cisco Unity Connection versions 8.5, 8.6, and 9.x when SIP trunk integration is enabled. Remote attackers can exploit this by improperly terminating SIP TCP connections, leading to a core dump and service restart. With a CVSS score of 7.1, it is a high-severity vulnerability with a network attack vector and high impact on availability. While no public exploit code or active exploitation has been observed, it has received some community and media attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
8.5\(1\)CPE matchmatch criteria | cpe:2.3:a:cisco:unity_connection:8.5\(1\):*:*:*:*:*:*:* | ||
8.5\(1\)su1CPE matchmatch criteria | cpe:2.3:a:cisco:unity_connection:8.5\(1\)su1:*:*:*:*:*:*:* | ||
8.5\(1\)su2CPE matchmatch criteria | cpe:2.3:a:cisco:unity_connection:8.5\(1\)su2:*:*:*:*:*:*:* | ||
8.5\(1\)su3CPE matchmatch criteria | cpe:2.3:a:cisco:unity_connection:8.5\(1\)su3:*:*:*:*:*:*:* | ||
8.5\(1\)su4CPE matchmatch criteria | cpe:2.3:a:cisco:unity_connection:8.5\(1\)su4:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.