Unspecified vulnerability in Cisco IOS CallManager Express (CME) allows remote attackers to gain sensitive information (user names) from the Session Initiation Protocol (SIP) user directory via certain SIP messages, aka bug CSCse92417.
References
Configurations
History
21 Nov 2024, 00:14
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/21335 - Vendor Advisory | |
References | () http://securitytracker.com/id?1016627 - | |
References | () http://www.blackhat.com/html/bh-usa-06/bh-usa-06-speakers.html#Endler - | |
References | () http://www.cisco.com/warp/public/707/cisco-sr-20060802-sip.shtml - Vendor Advisory | |
References | () http://www.osvdb.org/27760 - | |
References | () http://www.securityfocus.com/bid/19309 - | |
References | () http://www.vupen.com/english/advisories/2006/3126 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28185 - |
Information
Published : 2006-08-09 22:04
Updated : 2024-11-21 00:14
NVD link : CVE-2006-4032
Mitre link : CVE-2006-4032
CVE.ORG link : CVE-2006-4032
JSON object : View
Products Affected
cisco
- callmanager_express
CWE