First published: Sun Jul 15 2007(Updated: )
Cisco Unified Communications Manager (CUCM, formerly CallManager) and Unified Presence Server (CUPS) allow remote attackers to obtain sensitive information via unspecified vectors that reveal the SNMP community strings and configuration settings, aka (1) CSCsj20668 and (2) CSCsj25962.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Presence Server | =1.0 | |
Cisco Unified Presence Server | =1.0\(1\) | |
Cisco Unified Communications Manager | =5.1\(2\) | |
Cisco Unified Communications Manager | =5.0 | |
Cisco Unified Presence Server | =1.0\(3\) | |
Cisco Unified Communications Manager | =5.1\(1\) | |
Cisco Unified Presence Server | =1.0\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3776 has a medium severity rating due to the potential exposure of sensitive information.
To mitigate CVE-2007-3776, update your Cisco Unified Communications Manager and Unified Presence Server to the latest patched versions.
CVE-2007-3776 can allow remote attackers to gain access to sensitive information such as SNMP community strings and configuration settings.
CVE-2007-3776 affects Cisco Unified Communications Manager versions 5.0, 5.1(1), 5.1(2) and Cisco Unified Presence Server versions 1.0, 1.0(1), 1.0(2), and 1.0(3).
No, CVE-2007-3776 is not a zero-day vulnerability as it has been publicly disclosed and a fix is available.