CVE-2013-3459Improper Restriction of Operations within the Bounds of a Memory Buffer in Cisco Unified Communications Manager

Severity
7.8HIGHNVD
EPSS
0.4%
top 37.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 25
Latest updateMay 17

Description

Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6a does not properly handle errors, which allows remote attackers to cause a denial of service (service disruption) via malformed registration messages, aka Bug ID CSCuf93466.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-78g4-6rv8-vxm2: Cisco Unified Communications Manager (Unified CM) 72022-05-17
CVEList
CVE-2013-3459: Cisco Unified Communications Manager (Unified CM) 72013-08-25

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco Unified Communications Manager2013-08-21
CVE-2013-3459 — Cisco vulnerability | cvebase