PDA

View Full Version : Cisco Voice Products Vulnerabilities on IBM Servers



Best Programmer
پنج شنبه 02 بهمن 1382, 18:57 عصر
Summary
The default installation of Cisco voice products on the IBM platform will install the Director Agent in an unsecure state, leaving the Director services vulnerable to remote administration control and/or Denial of Service attacks.


Details
Vulnerable Systems:
* Cisco CallManager
* Cisco IP Interactive Voice Response (IP IVR)
* Cisco IP Call Center Express (IPCC Express)
* Cisco Personal Assistant (PA)
* Cisco Emergency Responder (CER)
* Cisco Conference Connection (CCC)
* Cisco Internet Service Node (ISN) running on an IBM with an affected OS version.

Affected IBM-based server model numbers:
* IBM X330 (8654 or 8674)
* IBM X340
* IBM X342
* IBM X345
* MCS-7815-1000
* MCS-7815I-2.0
* MCS-7835I-2.4
* MCS-7835I-3.0

* All operating system (OS) versions running on an IBM server prior to OS 2000.2.6, which has not yet been released as of the date of this notice.