10
CVSSv2

CVE-2008-0027

Published: 17/01/2008 Updated: 15/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 prior to 4.2(3)SR3 and 4.3 prior to 4.3(1)SR1, and CallManager 4.0 and 4.1 prior to 4.1(3)SR5c, allows remote malicious users to cause a denial of service or execute arbitrary code via a long request.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified callmanager 4.1

cisco unified callmanager 4.0

cisco unified communications manager 4.2.3sr2b

cisco unified communications manager 4.3

cisco unified callmanager 4.1\\(3\\)sr4

cisco unified callmanager 4.1\\(3\\)sr5

cisco unified callmanager 4.1\\(3\\)sr5b

cisco unified communications manager 4.2

cisco unified communications manager 4.2.3sr2