CyberSec.Space Logo
Back to CVE Browser

CVE-2006-5278

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1320%
EPSS Percentile17.09th
PublishedJul 15, 2007
Last ModifiedApr 23, 2026

Vulnerability Description

Integer overflow in the Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cisco Unified Communications Manager (CUCM, formerly CallManager) before 20070711 allow remote attackers to execute arbitrary code via crafted packets, resulting in a heap-based buffer overflow.

Affected Platforms (CPE)

πŸ“¦
Cisco

Unified Callmanager

>= 3.3 and <= 3.3\(5\)sr2
πŸ“¦
Cisco

Unified Callmanager

>= 4.1 and <= 4.1\(3\)sr4
πŸ“¦
Cisco

Unified Callmanager

>= 4.2 and <= 4.2\(3\)sr1
πŸ“¦
Cisco

Unified Callmanager

>= 5.1 and <= 5.1\(2\)
πŸ“¦
Cisco

Unified Callmanager

= 5.0
πŸ“¦
Cisco

Unified Communications Manager

>= 4.3 and <= 4.3\(1\)

References & Advisories

Related Vulnerabilities