Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-6624

Опубликовано: 03 мая 2017
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthorized phone calls. The vulnerability is due to a configuration restriction in the toll-fraud protections component of the affected software. An attacker could exploit this vulnerability to place unauthorized, long-distance phone calls by using an affected system. Cisco Bug IDs: CSCuy40939.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:cisco:ios:15.5\(3\)m:*:*:*:*:*:*:*

EPSS

Процентиль: 52%
0.0029
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-264
CWE-287

Связанные уязвимости

CVSS3: 5.3
github
больше 3 лет назад

A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthorized phone calls. The vulnerability is due to a configuration restriction in the toll-fraud protections component of the affected software. An attacker could exploit this vulnerability to place unauthorized, long-distance phone calls by using an affected system. Cisco Bug IDs: CSCuy40939.

EPSS

Процентиль: 52%
0.0029
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-264
CWE-287