CVE-2014-3337: Cisco Unified Communications Domain Manager
Medium severity, CVSS 6.8. EPSS: 2.4% chance of exploitation in the next 30 days.
The SIP implementation in Cisco Unified Communications Manager (CM) 8.6(.2) and earlier allows remote authenticated users to cause a denial of service (process crash) via a crafted SIP message that is not properly handled during processing of an XML document, aka Bug ID CSCtq76428.
Affected products
- Cisco Unified Communications Domain Manager: up to and including 8.6\(.2\)
Published 2014-08-12. Last modified 2026-06-17.