Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-4345

Stack-based buffer overflow in channels/chan_mgcp.c in MGCP in Asterisk 1.0 through 1.2.10 allows remote attackers to execute arbitrary code via a crafted audit endpoint (AUEP) response.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.052
EPSS Ranking 89.3%
CVSS Severity
CVSS v2 Score 7.5
References
Products affected by CVE-2006-4345
  • Digium » Asterisk » Version: 1.0.0
    cpe:2.3:a:digium:asterisk:1.0.0
  • Digium » Asterisk » Version: 1.0.1
    cpe:2.3:a:digium:asterisk:1.0.1
  • Digium » Asterisk » Version: 1.0.10
    cpe:2.3:a:digium:asterisk:1.0.10
  • Digium » Asterisk » Version: 1.0.2
    cpe:2.3:a:digium:asterisk:1.0.2
  • Digium » Asterisk » Version: 1.0.3
    cpe:2.3:a:digium:asterisk:1.0.3
  • Digium » Asterisk » Version: 1.0.4
    cpe:2.3:a:digium:asterisk:1.0.4
  • Digium » Asterisk » Version: 1.0.5
    cpe:2.3:a:digium:asterisk:1.0.5
  • Digium » Asterisk » Version: 1.0.6
    cpe:2.3:a:digium:asterisk:1.0.6
  • Digium » Asterisk » Version: 1.0.7
    cpe:2.3:a:digium:asterisk:1.0.7
  • Digium » Asterisk » Version: 1.0.8
    cpe:2.3:a:digium:asterisk:1.0.8
  • Digium » Asterisk » Version: 1.0.9
    cpe:2.3:a:digium:asterisk:1.0.9
  • Digium » Asterisk » Version: 1.0_rc1
    cpe:2.3:a:digium:asterisk:1.0_rc1
  • Digium » Asterisk » Version: 1.0_rc2
    cpe:2.3:a:digium:asterisk:1.0_rc2
  • Digium » Asterisk » Version: 1.2.0_beta1
    cpe:2.3:a:digium:asterisk:1.2.0_beta1
  • Digium » Asterisk » Version: 1.2.0_beta2
    cpe:2.3:a:digium:asterisk:1.2.0_beta2
  • Digium » Asterisk » Version: 1.2.10
    cpe:2.3:a:digium:asterisk:1.2.10
  • Digium » Asterisk » Version: 1.2.6
    cpe:2.3:a:digium:asterisk:1.2.6
  • Digium » Asterisk » Version: 1.2.7
    cpe:2.3:a:digium:asterisk:1.2.7
  • Digium » Asterisk » Version: 1.2.8
    cpe:2.3:a:digium:asterisk:1.2.8
  • Digium » Asterisk » Version: 1.2.9
    cpe:2.3:a:digium:asterisk:1.2.9


Contact Us

Shodan ® - All rights reserved