6.5
CVSSv2

CVE-2006-0367

Published: 22/01/2006 Updated: 20/07/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Unspecified vulnerability in Cisco CallManager 3.2 and previous versions, 3.3 prior to 3.3(5)SR1, 4.0 prior to 4.0(2a)SR2c, and 4.1 prior to 4.1(3)SR2 allows remote authenticated users with read-only administrative privileges to obtain full administrative privileges via a "crafted URL on the CCMAdmin web page."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco call manager 2.0

cisco call manager 3.0

cisco call manager 3.3\\(4\\)es25

cisco call manager 3.3\\(5\\)

cisco call manager 1.0

cisco call manager 3.3\\(3\\)

cisco call manager 3.3\\(3\\)es61

cisco call manager 4.1\\(3\\)es07

cisco call manager 4.1\\(3\\)sr1

cisco call manager 3.2

cisco call manager 3.3

cisco call manager 4.0\\(2a\\)sr2b

cisco call manager 4.1\\(2\\)es33

cisco call manager 3.1

cisco call manager 3.1\\(2\\)

cisco call manager 3.1\\(3a\\)

cisco call manager 4.0

cisco call manager 4.0\\(2a\\)es40

Vendor Advisories

Cisco CallManager (CCM) is the software-based call-processing component of the Cisco IP telephony solution which extends enterprise telephony features and functions to packet telephony network devices such as IP phones, media processing devices, voice-over-IP (VoIP) gateways, and multimedia applications Cisco CallManager versions with Mult ...