Lucene search

K
cvelistCiscoCVELIST:CVE-2017-6624
HistoryMay 03, 2017 - 9:00 p.m.

CVE-2017-6624

2017-05-0321:00:00
CWE-264
cisco
www.cve.org
8

AI Score

5.3

Confidence

High

EPSS

0.002

Percentile

53.0%

A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthorized phone calls. The vulnerability is due to a configuration restriction in the toll-fraud protections component of the affected software. An attacker could exploit this vulnerability to place unauthorized, long-distance phone calls by using an affected system. Cisco Bug IDs: CSCuy40939.

CNA Affected

[
  {
    "product": "Cisco CallManager Express",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Cisco CallManager Express"
      }
    ]
  }
]

AI Score

5.3

Confidence

High

EPSS

0.002

Percentile

53.0%

Related for CVELIST:CVE-2017-6624