VulnerabilityModified
CVE-2007-4294
Unspecified vulnerability in Cisco Unified Communications Manager (CUCM) 5.0, 5.1, and 6.0, and IOS 12.0 through 12.4, allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80102.
MEDIUM 6.8EPSS 2.55%
Does this matter?
Lower severity and a low EPSS score (2.55%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in Cisco Unified Communications Manager (CUCM) 5.0, 5.1, and 6.0, and IOS 12.0 through 12.4, allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80102.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 2.55% probability · 84th percentile
- CISA KEV
- Not listed
- Affected
- cisco/unified communications manager
- Source
- cve@mitre.org
References
- http://osvdb.org/36693
- http://secunia.com/advisories/26362Vendor Advisory
- http://securitytracker.com/id?1018538
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080899653.shtml
- http://www.securityfocus.com/bid/25239
- http://www.vupen.com/english/advisories/2007/2816
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5851
- http://osvdb.org/36693
- http://secunia.com/advisories/26362Vendor Advisory
- http://securitytracker.com/id?1018538
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080899653.shtml
- http://www.securityfocus.com/bid/25239
- http://www.vupen.com/english/advisories/2007/2816
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5851
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.