CVE-2013-3453: Cisco Unified Communications Manager

High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.

Memory leak in Cisco Unified Communications Manager IM and Presence Service before 8.6(5)SU1 and 9.x before 9.1(2), and Cisco Unified Presence, allows remote attackers to cause a denial of service (memory and CPU consumption) by making many TCP connections to port (1) 5060 or (2) 5061, aka Bug ID CSCud84959.

Affected products

  • Cisco Unified Communications Manager: up to and including 8.6\(4\); version 3.3(5) only; version 3.3(5)sr1 only; version 3.3(5)sr2a only; version 4.1(3) only; version 4.1(3)sr1 only; …
  • Cisco Unified Presence: affected versions not specified

Published 2013-08-22. Last modified 2026-06-16.