Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4521

Опубликовано: 28 авг. 2007
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an "invalid/corrupted" MIME body, which triggers a crash when the recipient listens to voicemail.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:asterisk:asterisk:1.4.5:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.6:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.7:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.8:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.9:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.10:*:*:*:*:*:*:*
cpe:2.3:a:asterisk:asterisk:1.4.11:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02151
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
около 18 лет назад

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an "invalid/corrupted" MIME body, which triggers a crash when the recipient listens to voicemail.

debian
около 18 лет назад

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an I ...

github
больше 3 лет назад

Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an "invalid/corrupted" MIME body, which triggers a crash when the recipient listens to voicemail.

EPSS

Процентиль: 84%
0.02151
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other