CVE-2012-3935

Severity
7.8HIGH
EPSS
0.8%
top 25.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 12
Latest updateMay 17

Description

Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) before 5.3 allow remote attackers to cause a denial of service (process crash) via a crafted XMPP stream header, aka Bug ID CSCtu32832.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-7p37-jwcq-c522: Cisco Unified Presence (CUP) before 82022-05-17
CVEList
CVE-2012-3935: Cisco Unified Presence (CUP) before 82012-09-12

📋Vendor Advisories

1
Cisco
Cisco Unified Presence and Jabber Extensible Communications Platform Stream Header Denial of Service Vulnerability2012-09-12
CVE-2012-3935 (HIGH CVSS 7.8) | Cisco Unified Presence (CUP) before | cvebase.io