Severity
7.8HIGH
EPSS
0.4%
top 37.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 9
Latest updateMay 17

Description

The CallServer component in Cisco Unified Customer Voice Portal (CVP) Software before 9.0.1 ES 11 allows remote attackers to cause a denial of service (call-acceptance outage) via malformed SIP INVITE messages, aka Bug ID CSCua65148.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-jggf-88rj-6q44: The CallServer component in Cisco Unified Customer Voice Portal (CVP) Software before 92022-05-17
CVEList
CVE-2013-1220: The CallServer component in Cisco Unified Customer Voice Portal (CVP) Software before 92013-05-09

📋Vendor Advisories

2
Red Hat
hw: AMD CPU erratum may cause core hang2013-11-28
Cisco
Multiple Vulnerabilities in Cisco Unified Customer Voice Portal Software2013-05-08
CVE-2013-1220 (HIGH CVSS 7.8) | The CallServer component in Cisco U | cvebase.io