CVE-2015-6410: Cisco Telepresence Video Communication Server Software
Medium severity, CVSS 4.0. EPSS: 1.7% chance of exploitation in the next 30 days.
The Mobile and Remote Access (MRA) services implementation in Cisco Unified Communications Manager mishandles edge-device identity validation, which allows remote attackers to bypass intended call-reception and call-setup restrictions by spoofing a user, aka Bug ID CSCuu97283.
Affected products
- Cisco Telepresence Video Communication Server Software: version x8.5 only
Published 2015-12-14. Last modified 2026-06-17.