CVE-2012-0331
published 2012-03-01CVE-2012-0331: Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP…
PriorityP434high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.31%
67.2th percentile
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP packet, as demonstrated by a SIP INVITE message from a Tandberg device, aka Bug ID CSCtq73319.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | telepresence_system_software | <= x7.0 | — |
| cisco | telepresence_system_software | — | — |
| cisco | telepresence_system_software | — | — |
| cisco | telepresence_system_software | — | — |
| cisco | telepresence_video_communication_server_session_initiation_protocol | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
vendor_cisco·2012-03-01·CVSS 7.8
CVE-2012-0330 [HIGH] Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
Cisco TelePresence Video Communication Servers running software versions prior to X7.0.1 contain vulnerabilities that could allow an attacker to cause a
denial of service (DoS) condition.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that mitigate these vulnerabilities.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120229-vcs
Cisco
Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
vendor_cisco
CVE-2012-0331 Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
CVE-2012-0331: Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
Cisco TelePresence Video Communication Servers running software versions prior to X7.0.1 contain vulnerabilities that could allow an attacker to cause a denial of service (DoS) condition. Cisco has released software updates that address these vulnerabilities. There are no
Bug IDs: CSCtq73319, CSCtr20426, CSCtr20426, CSCtq73319
GHSA
GHSA-mvfx-mm77-jc47: Cisco TelePresence Video Communication Server with software before X7
ghsa_unreviewed·2022-05-04
CVE-2012-0331 [HIGH] GHSA-mvfx-mm77-jc47: Cisco TelePresence Video Communication Server with software before X7
Cisco TelePresence Video Communication Server with software before X7.0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP packet, as demonstrated by a SIP INVITE message from a Tandberg device, aka Bug ID CSCtq73319.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2012-03-01
Published