AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2008-0027

HIGH · CVSS 10 EPSS 57.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-01-17 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2008-0027
Severity
HIGH
CVSS
10
EPSS
57.11%
Cisco

Original Filing — NVD Description

Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.