Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Call_manager
(Cisco)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 19 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2006-01-22 | CVE-2006-0368 | Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allow remote attackers to (1) cause a denial of service (CPU and memory consumption) via a large number of open TCP connections to port 2000 and (2) cause a denial of service (fill the Windows Service Manager communication queue) via a large number of TCP connections to port 2001, 2002, or 7727. | Call_manager | N/A | ||
2006-01-22 | CVE-2006-0367 | Unspecified vulnerability in Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allows remote authenticated users with read-only administrative privileges to obtain full administrative privileges via a "crafted URL on the CCMAdmin web page." | Call_manager | N/A | ||
2005-07-12 | CVE-2005-2244 | The aupair service (aupair.exe) in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 allows remote attackers to execute arbitrary code or corrupt memory via crafted packets that trigger a memory allocation failure and lead to a buffer overflow. | Call_manager | N/A | ||
2005-07-12 | CVE-2005-2243 | Memory leak in inetinfo.exe in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1, when Multi Level Admin (MLA) is enabled, allows remote attackers to cause a denial of service (memory consumption) via a large number of Admin Service Tool (AST) logins that fail. | Call_manager | N/A | ||
2005-07-12 | CVE-2005-2242 | Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 allows remote attackers to cause a denial of service (memory consumption and restart) via crafted packets to (1) the CTI Manager (ctimgr.exe) or (2) the CallManager (ccm.exe). | Call_manager | N/A | ||
2005-07-12 | CVE-2005-2241 | Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1 does not quickly time out Realtime Information Server Data Collection (RISDC) sockets, which results in a "resource leak" that allows remote attackers to cause a denial of service (memory and connection consumption) in RisDC.exe. | Call_manager | N/A | ||
2004-01-21 | CVE-2004-1760 | The default installation of Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, does not require authentication, which allows remote attackers to gain administrator privileges by connecting to TCP port 14247. | Call_manager, Conference_connection, Emergency_responder, Internet_service_node, Ip_call_center_express_enhanced, Ip_call_center_express_standard, Ip_interactive_voice_response, Personal_assistant, Director_agent, Mcs\-7815\-1000, Mcs\-7815i\-2\.0, Mcs\-7835i\-2\.4, Mcs\-7835i\-3\.0, X330, X340, X342, X345 | N/A | ||
2004-01-21 | CVE-2004-1759 | Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, allows remote attackers to cause a denial of service (CPU consumption) via arbitrary packets to TCP port 14247, as demonstrated using port scanning. | Call_manager, Conference_connection, Emergency_responder, Internet_service_node, Ip_call_center_express_enhanced, Ip_call_center_express_standard, Ip_interactive_voice_response, Personal_assistant, Director_agent, Mcs\-7815\-1000, Mcs\-7815i\-2\.0, Mcs\-7835i\-2\.4, Mcs\-7835i\-3\.0, X330, X340, X342, X345 | N/A | ||
2002-08-12 | CVE-2002-0505 | Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers to cause a denial of service (crash and reload) via a series of authentication failures, e.g. via incorrect passwords. | Call_manager | N/A |