CVE-2005-2243

Cisco CallManager DoS via Failed Admin Service Tool Logins

Title source: llm
STIX 2.1

Description

Memory leak in inetinfo.exe in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1, when Multi Level Admin (MLA) is enabled, allows remote attackers to cause a denial of service (memory consumption) via a large number of Admin Service Tool (AST) logins that fail.

References (2)

Core 2
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20050712-ccm.shtml
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14253

Scores

EPSS 0.0126
EPSS Percentile 66.5%

Details

Status published
Products (4)
cisco/call_manager 3.2
cisco/call_manager 3.3
cisco/call_manager 4.0
cisco/call_manager 4.1
Published Jul 12, 2005
Tracked Since Feb 18, 2026