5
CVSSv2

CVE-2005-2242

Published: 12/07/2005 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Cisco CallManager (CCM) 3.2 and previous versions, 3.3 prior to 3.3(5), 4.0 prior to 4.0(2a)SR2b, and 4.1 4.1 prior to 4.1(3)SR1 allows remote malicious users to cause a denial of service (memory consumption and restart) via crafted packets to (1) the CTI Manager (ctimgr.exe) or (2) the CallManager (ccm.exe).

Vulnerable Product Search on Vulmon Subscribe to Product

Vendor Advisories

Cisco CallManager (CCM) is the software-based call-processing component of the Cisco IP telephony solution which extends enterprise telephony features and functions to packet telephony network devices such as IP phones, media processing devices, voice-over-IP (VoIP) gateways, and multimedia applications Cisco CallManager 33 and earlier, 4 ...

Exploits

source: wwwsecurityfocuscom/bid/14251/info The CallManager CTI Manager service is susceptible to a remote denial of service vulnerability This issue is documented in Cisco bug CSCee00116, which is available to Cisco customers This issue may be exploited to cause the affected application to restart, denying service to legitimate users ...