Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-0368

EPSS 2.75% · P86
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-0368

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cisco CallManager 3.2 and earlier, 3.3 before 3.3(5)SR1, 4.0 before 4.0(2a)SR2c, and 4.1 before 4.1(3)SR2 allow remote attackers to (1) cause a denial of service (CPU and memory consumption) via a large number of open TCP connections to port 2000 and (2) cause a denial of service (fill the Windows Service Manager communication queue) via a large number of TCP connections to port 2001, 2002, or 7727.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco Call Manager端口管理拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco CallManager(CCM)是美国思科(Cisco)公司的一套基于思科统一通信解决方案中的呼叫处理组件。 一些CCM版本没有主动管理TCP连接和Windows消息,导致一些公开的发布端口受拒绝服务攻击影响: 1 CCM没有足够主动的超时到2000端口的TCP连接,导致足够多的开放连接会耗尽内存和CPU资源。在特定的情况下,CCM会无限期的保持TCP连接开放,直到重启CCM服务或重启服务器。 2 多个到2001、2002或7727端口的连接会充满Windows消息队列,导致CCM无法处理Wi
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-0368

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0368

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-01-22 · 24 CVEs total

CVE-2006-0365XMB 跨站脚本攻击漏洞
CVE-2006-0353LSH 访问验证错误
CVE-2006-0376Windows 系列版本802.11无线客户机安全警告漏洞
CVE-2006-0375ACT P202S VOIP WIFI Phones未明漏洞
CVE-2006-0374ACT P202S VOIP WIFI Phones多个远程漏洞
CVE-2006-0373Douran FollowWeb Portal Register.ASPX 跨站脚本攻击漏洞
CVE-2006-0372BlogPHP多个SQL注入漏洞
CVE-2006-0371RCBlog Index.PHP目录遍历漏洞
CVE-2006-0370Noah Medling RCBlog 安全访问控制漏洞
CVE-2006-0369MySQL 查询返回创建VIEW查询敏感信息泄露漏洞
CVE-2006-0367Cisco CallManager CCMAdmin远程权限提升漏洞
CVE-2006-0366Phpclanwebsite BBCode IMG 跨站脚本攻击漏洞
CVE-2006-0354Cisco Aironet无线接入点ARP攻击拒绝服务漏洞
CVE-2006-0364MyBB Signature 跨站脚本攻击漏洞
CVE-2006-0363MSN Messenger CryptUnprotectData程序原始密码获取漏洞
CVE-2006-03623Com TippingPoint IPS远程未指定的拒绝服务漏洞
CVE-2006-0361Bit 5 Blog AddComment.PHP 跨站脚本攻击漏洞
CVE-2006-0360MPM HP-180W VOIP WIFI Phone信息泄露漏洞
CVE-2006-0359CounterPath eyeBeam SIP首部数据远程溢出漏洞
CVE-2006-0358PowerPortal 多个SQL注入漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-0368

No comments yet


Leave a comment