CVE-2015-6410: Cisco Telepresence Video Communication Server Software

Medium severity, CVSS 4.0. EPSS: 1.7% chance of exploitation in the next 30 days.

The Mobile and Remote Access (MRA) services implementation in Cisco Unified Communications Manager mishandles edge-device identity validation, which allows remote attackers to bypass intended call-reception and call-setup restrictions by spoofing a user, aka Bug ID CSCuu97283.

Affected products

  • Cisco Telepresence Video Communication Server Software: version x8.5 only

Published 2015-12-14. Last modified 2026-06-17.