CVE-2009-2874

CWE-3994 documents4 sources
Severity
7.8HIGH
EPSS
3.1%
top 13.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 16
Latest updateMay 2

Description

The TimesTenD process in Cisco Unified Presence 1.x, 6.x before 6.0(6), and 7.x before 7.0(4) allows remote attackers to cause a denial of service (process crash) via a large number of TCP connections to ports 16200 and 22794, aka Bug ID CSCsy17662.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

โ–ถNVDcisco/unified_presence_server12 versions+11

Patches

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-phqm-4q46-2r6c: The TimesTenD process in Cisco Unified Presence 1โ†—2022-05-02
โ–ถ
CVEList
CVE-2009-2874: The TimesTenD process in Cisco Unified Presence 1โ†—2009-10-16
โ–ถ

๐Ÿ“‹Vendor Advisories

1
Cisco
Cisco Unified Presence Denial of Service Vulnerabilitiesโ†—2009-10-14
โ–ถ