Description
Memory leak in inetinfo.exe in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1, when Multi Level Admin (MLA) is enabled, allows remote attackers to cause a denial of service (memory consumption) via a large number of Admin Service Tool (AST) logins that fail.
References (2)
Core 2
Core References
Patch, Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20050712-ccm.shtml
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14253
Scores
EPSS
0.0126
EPSS Percentile
66.5%
Details
Status
published
Products (4)
cisco/call_manager
3.2
cisco/call_manager
3.3
cisco/call_manager
4.0
cisco/call_manager
4.1
Published
Jul 12, 2005
Tracked Since
Feb 18, 2026