Remote Code Execution Vulnerability in Cisco Unified Communications Manager
CVE-2006-5278

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
15 July 2007

Summary

The Real-Time Information Server (RIS) Data Collector service (RisDC.exe) in Cisco Unified Communications Manager prior to version 20070711 is prone to an integer overflow vulnerability. This flaw allows remote attackers to exploit crafted packets to execute arbitrary code on the affected system, which can lead to a heap-based buffer overflow and potentially compromise network security.

References

EPSS Score

9% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.