CVE-2008-0026

Cisco Unified Communications Manager SQL Injection via Key Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-0026. PoCs published by Nico Leidecker.

AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Cisco Unified Communications Manager. It leverages unsanitized input in the 'key' parameter to extract user credentials from the 'enduser' and 'applicationuser' tables.

Description

SQL injection vulnerability in Cisco Unified CallManager/Communications Manager (CUCM) 5.0/5.1 before 5.1(3a) and 6.0/6.1 before 6.1(1a) allows remote authenticated users to execute arbitrary SQL commands via the key parameter to the (1) admin and (2) user interface pages.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nico Leidecker · textwebappsjava
https://www.exploit-db.com/exploits/31189

This exploit demonstrates an SQL injection vulnerability in Cisco Unified Communications Manager. It leverages unsanitized input in the 'key' parameter to extract user credentials from the 'enduser' and 'applicationuser' tables.

Classification
Working Poc 90%
Attack Type
Sqli
Complexity
Trivial
Reliability
Reliable
Target: Cisco Unified Communications Manager 5.0/5.1 prior to 5.1(3a), 6.0/6.1 prior to 6.1(1a)
No auth needed
Prerequisites: Network access to the vulnerable Cisco Unified Communications Manager instance
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27775
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28932
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/40484
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1019404
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0542

Scores

EPSS 0.0192
EPSS Percentile 77.4%

Details

CWE
CWE-89
Status published
Products (20)
cisco/unified_callmanager 5.0
cisco/unified_callmanager 5.0\(1\)
cisco/unified_callmanager 5.0\(2\)
cisco/unified_callmanager 5.0\(3\)
cisco/unified_callmanager 5.0\(3a\)
cisco/unified_callmanager 5.0\(4\)
cisco/unified_callmanager 5.0_4a
cisco/unified_callmanager 5.1
cisco/unified_callmanager 6.0
cisco/unified_communications_manager 5.0
... and 10 more
Published Feb 14, 2008
Tracked Since Feb 18, 2026