CVE-2008-2062
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Real-Time Information Server (RIS) Data Collector service in Cisco Unified Communications Manager (CUCM) before 4.2(3)SR4, and 4.3 before 4.3(2)SR1, allows remote attackers to bypass authentication, and obtain cluster configuration information and statistics, via a direct TCP connection to the service port, aka Bug ID CSCsq35151.
El Servicio Real-Time Information Server (RIS) Data Collector de Cisco Unified Communications Manager (CUCM) versiones anteriores a la 4.2(3)SR4 y 4.3 versiones anterieos a la 4.3(2)SR1, permite a atacantes remotos evitar la autenticación y obtener información sobre la configuración en cluster y estadísticas, a través de una conexión directa TCP al puerto de servicio, también conocida como Bug ID CSCsq35151.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2008-05-02 CVE Reserved
- 2008-06-26 CVE Published
- 2024-08-07 CVE Updated
- 2024-10-21 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/30848 | Third Party Advisory | |
http://www.securityfocus.com/bid/29935 | Third Party Advisory | |
http://www.securitytracker.com/id?1020361 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/43355 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.cisco.com/en/US/products/products_security_advisory09186a00809b9011.shtml | 2019-07-31 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | >= 4.2 < 4.2\(3\)sr4 Search vendor "Cisco" for product "Unified Communications Manager" and version " >= 4.2 < 4.2\(3\)sr4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | >= 4.3 < 4.3\(2\)sr1 Search vendor "Cisco" for product "Unified Communications Manager" and version " >= 4.3 < 4.3\(2\)sr1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | >= 5.0 < 5.1\(3c\) Search vendor "Cisco" for product "Unified Communications Manager" and version " >= 5.0 < 5.1\(3c\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Communications Manager Search vendor "Cisco" for product "Unified Communications Manager" | >= 6.0 < 6.1\(2\) Search vendor "Cisco" for product "Unified Communications Manager" and version " >= 6.0 < 6.1\(2\)" | - |
Affected
|