Lucene search

K
cveMitreCVE-2007-5537
HistoryOct 18, 2007 - 12:17 a.m.

CVE-2007-5537

2007-10-1800:17:00
CWE-399
mitre
web.nvd.nist.gov
22
cisco
unified communications manager
cucm
callmanager
cve-2007-5537
denial of service
sip
udp
vulnerability
cscsi75822
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.7

Confidence

High

EPSS

0.032

Percentile

91.4%

Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(2), and Unified CallManager 5.0, allow remote attackers to cause a denial of service (kernel panic) via a flood of SIP INVITE messages to UDP port 5060, which triggers resource exhaustion, aka CSCsi75822.

Affected configurations

Nvd
Node
ciscounified_callmanagerMatch5.0
OR
ciscounified_communications_managerRange5.1\(2\)
VendorProductVersionCPE
ciscounified_callmanager5.0cpe:2.3:a:cisco:unified_callmanager:5.0:*:*:*:*:*:*:*
ciscounified_communications_manager*cpe:2.3:a:cisco:unified_communications_manager:*:*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.7

Confidence

High

EPSS

0.032

Percentile

91.4%

Related for CVE-2007-5537