CVE-2005-0186
published 2005-01-19CVE-2005-0186: Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony…
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.59%
83.5th percentile
Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony (SRST), allows remote attackers to cause a denial of service (device reboot) via a malformed packet to the SCCP port.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios_embedded_call_processing_solutions | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Vulnerability in Cisco IOS Embedded Call Processing Solutions
vendor_cisco·2005-01-19
CVE-2005-0186 CWE-399 Vulnerability in Cisco IOS Embedded Call Processing Solutions
Vulnerability in Cisco IOS Embedded Call Processing Solutions
Cisco Internetwork Operating System (IOS®) Software release trains
12.1YD, 12.2T, 12.3 and 12.3T, when configured for the Cisco IOS Telephony
Service (ITS), Cisco CallManager Express (CME) or Survivable Remote Site
Telephony (SRST) may contain a vulnerability in processing certain malformed
control protocol messages.
A successful exploitation of this vulnerability may cause a reload of
the device and could be exploited repeatedly to produce a Denial of Service
(DoS). This advisory is available at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20050119-itscme
Cisco has made free software upgrades available to address this
vulnerability for all affected customers. There are workarounds
Cisco
Vulnerability in Cisco IOS Embedded Call Processing Solutions
vendor_cisco
CVE-2005-0186 Vulnerability in Cisco IOS Embedded Call Processing Solutions
CVE-2005-0186: Vulnerability in Cisco IOS Embedded Call Processing Solutions
Cisco Internetwork Operating System (IOS�) Software release trains 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the Cisco IOS Telephony Service (ITS), Cisco CallManager Express (CME) or Survivable Remote Site Telephony (SRST) may contain a vulnerability in processing certain malformed control protocol messages. A successful exploitation of this vulnerability may cause a reload of the device and could be exploited repeatedly to produce a Denial of Service (DoS). This advisory is available at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20050119-itscme Cisco has made free software upgrades available to address this vulnerability for all affected customers. There are
CW
GHSA
GHSA-hg8v-hj76-3f4v: Cisco IOS 12
ghsa_unreviewed·2022-05-01
CVE-2005-0186 [MEDIUM] GHSA-hg8v-hj76-3f4v: Cisco IOS 12
Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony (SRST), allows remote attackers to cause a denial of service (device reboot) via a malformed packet to the SCCP port.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/13913http://securitytracker.com/id?1012945http://www.cisco.com/warp/public/707/cisco-sa-20050119-itscme.shtmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/18956https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4849http://secunia.com/advisories/13913http://securitytracker.com/id?1012945http://www.cisco.com/warp/public/707/cisco-sa-20050119-itscme.shtmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/18956https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4849
2005-01-19
Published