← Vulnerability feed

Vulnerability record · CVE-2007-1826 · published 2 April 2007

CVE-2007-1826: Cisco unified callmanager vulnerability

Cisco · Unified Callmanager

Unspecified vulnerability in the IPSec Manager Service for Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allows remote attackers to cause a denial of service (loss of cluster services) via a "specific UDP packet" to UDP port 8500, aka bug ID CSCsg60949.

7.8 CVSS 2.0 High EPSS 2.0% · top 20.3%
7.8CVSS 2.0 base score
2.0%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
14References
16 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in the IPSec Manager Service for Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allows remote attackers to cause a denial of service (loss of cluster services) via a "specific UDP packet" to UDP port 8500, aka bug ID CSCsg60949.

AV:N/AC:L/Au:N/C:N/I:N/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2007-1826 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2011-1643Cisco unified communications manager information exposure vulnerabilityCisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x, 7.x before 7.1(5b)su4, 8.0, and 8.5 before 8.5(1)su2 and Cisco Unified Pre…EPSS 1.9%10.0CVE-2008-0027Cisco Unified Communications Manager CTL Provider heap buffer overflowThe Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager and CallManager contains a heap-based buf…EPSS 57%analysed10.0CVE-2007-5538Cisco unified callmanager memory buffer overflow vulnerabilityBuffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), …EPSS 5.5%10.0CVE-2006-5278Cisco unified callmanager vulnerabilityInteger overflow in the Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cisco Unified Communications Manager (CUCM, formerly…EPSS 8.9%9.3CVE-2006-5277Cisco unified callmanager vulnerabilityOff-by-one error in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM, formerly CallM…EPSS 9.6%7.8CVE-2013-1137Cisco unified presence server memory buffer overflow vulnerabilityCisco Unified Presence Server (CUPS) 8.6, 9.0, and 9.1 before 9.1.1 allows remote attackers to cause a denial of service (CPU consumption) via crafte…EPSS 2.3%7.8CVE-2010-2839Cisco unified presence server vulnerabilitySIPD in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) allows remote attackers to cause a denial of service (stack memory corruption …EPSS 1.2%7.8CVE-2010-2840Cisco unified presence server improper input validation vulnerabilityThe Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact fiel…EPSS 1.2%

Source: NIST National Vulnerability Database (record CVE-2007-1826), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.