Cisco Security Advisory 20040124 – The default installation of Cisco voice products on the IBM platform will install the Director Agent in an unsecure state, leaving the Director services vulnerable to remote administration control and/or Denial of Service attacks. The vulnerabilities can be mitigated by configuration changes and Cisco is providing a repair script that will close the vulnerable ports and put the Director agent in secure state without requiring an upgrade.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32546/cisco-sa-20040121-voice.txt
Source: https://packetstormsecurity.com/files/32546/Cisco-Security-Advisory-20040121-voice.html

