Search Results (Refine Search)
- CPE Product Version: cpe:/h:cisco:call_manager:4.0%282a%29sr2b
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2006-0367 |
Unspecified vulnerability in Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allows remote authenticated users with read-only administrative privileges to obtain full administrative privileges via a "crafted URL on the CCMAdmin web page." Published: January 22, 2006; 3:03:00 PM -0500 |
V3.x:(not available) V2.0: 6.5 MEDIUM |
CVE-2006-0368 |
Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allow remote attackers to (1) cause a denial of service (CPU and memory consumption) via a large number of open TCP connections to port 2000 and (2) cause a denial of service (fill the Windows Service Manager communication queue) via a large number of TCP connections to port 2001, 2002, or 7727. Published: January 22, 2006; 3:03:00 PM -0500 |
V3.x:(not available) V2.0: 7.8 HIGH |