
CVE-2006-0367
https://notcve.org/view.php?id=CVE-2006-0367
22 Jan 2006 — Unspecified vulnerability in Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allows remote authenticated users with read-only administrative privileges to obtain full administrative privileges via a "crafted URL on the CCMAdmin web page." • http://secunia.com/advisories/18501 •

CVE-2006-0368
https://notcve.org/view.php?id=CVE-2006-0368
22 Jan 2006 — Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allow remote attackers to (1) cause a denial of service (CPU and memory consumption) via a large number of open TCP connections to port 2000 and (2) cause a denial of service (fill the Windows Service Manager communication queue) via a large number of TCP connections to port 2001, 2002, or 7727. • http://secunia.com/advisories/18494 •

CVE-2005-0356 – TCP TIMESTAMPS - Denial of Service
https://notcve.org/view.php?id=CVE-2005-0356
31 May 2005 — Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old. • https://www.exploit-db.com/exploits/1008 •

CVE-2004-1759
https://notcve.org/view.php?id=CVE-2004-1759
21 Jan 2004 — Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, allows remote attackers to cause a denial of service (CPU consumption) via arbitrary packets to TCP port 14247, as demonstrated using port scanning. • http://secunia.com/advisories/10696 • CWE-399: Resource Management Errors •

CVE-2004-1760
https://notcve.org/view.php?id=CVE-2004-1760
21 Jan 2004 — The default installation of Cisco voice products, when running the IBM Director Agent on IBM servers before OS 2000.2.6, does not require authentication, which allows remote attackers to gain administrator privileges by connecting to TCP port 14247. • http://secunia.com/advisories/10696 • CWE-287: Improper Authentication •

CVE-2002-0505
https://notcve.org/view.php?id=CVE-2002-0505
12 Aug 2002 — Memory leak in the Call Telephony Integration (CTI) Framework authentication for Cisco CallManager 3.0 and 3.1 before 3.1(3) allows remote attackers to cause a denial of service (crash and reload) via a series of authentication failures, e.g. via incorrect passwords. Fuga de memoria en la autenticación Call Telephony Integration (CTI) Framework en Cisco CallManager 3.0 y 3.1 anteriores a 3.1(3) permite a atacantes remotos causar una denegación de servicio (caída y recarga) mediante una serie de fallos de au... • http://www.cisco.com/warp/public/707/callmanager-ctifw-leak-pub.shtml •