Vulnerability Name: | CVE-2007-5538 (CCN-37247) | ||||||||
Assigned: | 2007-10-17 | ||||||||
Published: | 2007-10-17 | ||||||||
Updated: | 2017-07-29 | ||||||||
Summary: | Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), and Unified CallManager 5.0, allows remote attackers to execute arbitrary code or cause a denial of service via unspecified vectors involving the processing of filenames, aka CSCsh47712. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
7.4 High (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-5538 Source: OSVDB Type: UNKNOWN 37940 Source: CCN Type: SA27296 Cisco Unified Communications Manager Two Vulnerabilities Source: SECUNIA Type: UNKNOWN 27296 Source: CCN Type: SECTRACK ID: 1018828 Cisco Unified Communications Manager SIP INVITE Processing Lets Remote Users Deny Service and TFTP Buffer Overflow Lets Remote Users Execute Arbitrary Code Source: CISCO Type: UNKNOWN 20071017 Cisco Unified Communications Manager Denial of Service Vulnerabilities Source: CCN Type: cisco-sa-20071017-cucm Cisco Unified Communications Manager Denial of Service Vulnerabilities Source: CCN Type: OSVDB ID: 37940 Cisco Unified Communications Manager (CUCM) Centralized TFTP File Locator Service Remote Overflow Source: BID Type: UNKNOWN 26105 Source: CCN Type: BID-26105 Cisco Unified Communications Manager Remote Denial of Service and Buffer Overflow Vulnerabilities Source: SECTRACK Type: UNKNOWN 1018828 Source: VUPEN Type: UNKNOWN ADV-2007-3532 Source: XF Type: UNKNOWN cucm-tftp-filename-bo(37247) Source: XF Type: UNKNOWN cucm-tftp-filename-bo(37247) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |