AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2011-4487

MEDIUM · CVSS 6.8 EPSS 1.03%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-03-01 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2011-4487
Severity
MEDIUM
CVSS
6.8
EPSS
1.03%
Cisco

Original Filing — NVD Description

SQL injection vulnerability in Cisco Unified Communications Manager (CUCM) with software 6.x and 7.x before 7.1(5b)su5, 8.0 before 8.0(3a)su3, and 8.5 and 8.6 before 8.6(2a)su1 and Cisco Business Edition 3000 with software before 8.6.3 and 5000 and 6000 with software before 8.6(2a)su1 allows remote attackers to execute arbitrary SQL commands via a crafted SCCP registration, aka Bug ID CSCtu73538.