CVE-2013-3403: Cisco Unified Communications Manager
Medium severity, CVSS 6.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Multiple untrusted search path vulnerabilities in Cisco Unified Communications Manager (CUCM) 7.1(x) through 9.1(1a) allow local users to gain privileges by leveraging unspecified file-permission and environment-variable issues for privileged programs, aka Bug ID CSCuh73454.
Affected products
- Cisco Unified Communications Manager: version 7.1(2a) only; version 7.1(2a)su1 only; version 7.1(2b) only; version 7.1(2b)su1 only; version 7.1(3) only; version 7.1(3a) only; …
Published 2013-07-18. Last modified 2026-06-16.