Skip to content
Noroxi

unify records

15 published records for vendor unify.

All records

15 records
  • eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload f

    CriticalCVSS 10.0No exploitEPSS 5%

    unify · ewave servletexecDec 11, 2000

  • Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of administrative scripts by unauthenticated users.

    CriticalCVSS 9.8No exploitEPSS 4%

    unify · session border controllerOct 4, 2023

  • CVE-2014-2652
    39Monitor

    SQL injection vulnerability in OpenScape Deployment Service (DLS) before 6.x and 7.x before R1.11.3 allows remote attackers to execute arbit

    CriticalCVSS 9.8No exploitEPSS 1%

    unify · openscape deployment serviceMar 19, 2018

  • Atos Unify OpenScape Session Border Controller through V10 R3.01.03 allows execution of OS commands as root user by low-privileged authentic

    HighCVSS 8.8No exploitEPSS 4%

    unify · session border controllerOct 4, 2023

  • An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    HighCVSS 8.8No exploitEPSS 1%

    unify · openscape voice trace managerFeb 8, 2024

  • CVE-2014-8422
    32Monitor

    The web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 gener

    HighCVSS 8.1No exploitEPSS 2%

    unify · openstage sipApr 12, 2018

  • CVE-2000-0498
    31Monitor

    Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension i

    HighCVSS 7.5No exploitEPSS 2%

    unify · ewave servletexecJun 8, 2000

  • CVE-2014-8421
    31Monitor

    Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP V3 devices before R3.32.0 allow remote attackers to gain super-user privile

    HighCVSS 7.5No exploitEPSS 2%

    unify · openstage sipApr 12, 2018

  • A directory traversal vulnerability in the SOAP Server integrated in Atos Unify OpenScape Voice V10 before V10R3.26.1 allows a remote attack

    HighCVSS 7.5No exploitEPSS 1%

    unify · openscape voiceJan 12, 2024

  • An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    MediumCVSS 6.1No exploitEPSS 0%

    unify · openscape voice trace managerFeb 8, 2024

  • CVE-2000-1025
    23Monitor

    eWave ServletExec JSP/Java servlet engine, versions 3.0C and earlier, allows remote attackers to cause a denial of service via a URL that co

    MediumCVSS 5.0Proof of conceptEPSS 8%

    unify · ewave servletexecDec 11, 2000

  • CVE-2015-8251
    23Monitor

    OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Pho

    MediumCVSS 5.9No exploitEPSS 1%

    unify · openstage 60 firmwareSep 25, 2017

  • CVE-2000-1114
    21Monitor

    Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with characters such as "

    MediumCVSS 5.0Proof of conceptEPSS 3%

    unify · ewave servletexecJan 9, 2001

  • CVE-2014-9563
    19Monitor

    CRLF injection vulnerability in the web-based management (WBM) interface in Unify (former Siemens) OpenStage SIP and OpenScape Desk Phone IP

    MediumCVSS 4.9No exploitEPSS 1%

    unify · openstage sipApr 12, 2018

  • An issue was discovered in Atos Unify OpenScape Voice Trace Manager V8 before V8 R0.9.11.

    MediumCVSS 4.3No exploitEPSS 0%

    unify · openscape voice trace managerFeb 8, 2024