Heap-based Buffer Overflow in Cisco Unified Communications Manager
CVE-2008-0027

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
17 January 2008

Summary

A heap-based buffer overflow vulnerability exists in the Certificate Trust List (CTL) Provider service of Cisco Unified Communications Manager. This flaw allows remote attackers to exploit the system through crafted requests that can lead to a denial of service or arbitrary code execution. The vulnerability affects multiple versions of CUCM and CallManager prior to specified updates, underscoring the importance of timely patches and updates to safeguard against potential exploitation.

References

EPSS Score

62% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.