CVE-2017-6722: Cisco Unified Contact Center Express
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of Cisco Unified Contact Center Express (UCCx) could allow an unauthenticated, remote attacker to masquerade as a legitimate user, aka a Clear Text Authentication Vulnerability. More Information: CSCuw86638. Known Affected Releases: 10.6(1). Known Fixed Releases: 11.5(1.10000.61).
Affected products
- Cisco Unified Contact Center Express: version 11.5(1) only; version 11.5.1es01 only; version 11.5.1su1 only
Published 2017-07-04. Last modified 2026-06-17.