CyberSec.Space Logo
返回 CVE 浏览器

CVE-2006-5278

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1320%
EPSS Percentile17.09th
Published2007年7月15日
Last Modified2026年4月23日

Vulnerability Description

Integer overflow in the Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cisco Unified Communications Manager (CUCM, formerly CallManager) before 20070711 allow remote attackers to execute arbitrary code via crafted packets, resulting in a heap-based buffer overflow.

Affected Platforms (CPE)

📦
Cisco

Unified Callmanager

>= 3.3 and <= 3.3\(5\)sr2
📦
Cisco

Unified Callmanager

>= 4.1 and <= 4.1\(3\)sr4
📦
Cisco

Unified Callmanager

>= 4.2 and <= 4.2\(3\)sr1
📦
Cisco

Unified Callmanager

>= 5.1 and <= 5.1\(2\)
📦
Cisco

Unified Callmanager

= 5.0
📦
Cisco

Unified Communications Manager

>= 4.3 and <= 4.3\(1\)

References & Advisories

相关漏洞威胁