CVE-2016-6445
published 2016-10-27CVE-2016-6445: A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18…
PriorityP262critical9.1CVSS 3.0
AVNACLPRNUINSUCHIHAN
EPSS
2.51%
83.0th percentile
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18 and 1.9.x before 1.9.6 could allow an unauthenticated, remote attacker to masquerade as a legitimate user. This vulnerability is due to the XMPP service incorrectly processing a deprecated authentication scheme. A successful exploit could allow an attacker to access the system as another user.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
| cisco | meeting_server | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →The XMPP service incorrectly processes a deprecated authentication scheme, allowing unauthenticated remote attackers to masquerade as legitimate users. Monitor XMPP authentication attempts using deprecated/non-standard authentication schemes against Cisco Meeting Server. ↗
- →Track Cisco Bug ID CSCvb62741 for vendor patch and detection guidance related to this authentication bypass in the CMS XMPP service. ↗
- ·Affected versions include Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18 and 1.9.x before 1.9.6. Ensure these versions are identified and patched or mitigated. ↗
- ·Workarounds are available for some environments as an interim mitigation prior to patching. ↗
CVSS provenance
nvdv3.09.1CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
vendor_cisco6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Meeting Server Client Authentication Bypass Vulnerability
vendor_cisco·2016-10-12·CVSS 6.4
CVE-2016-6445 [MEDIUM] CWE-20 Cisco Meeting Server Client Authentication Bypass Vulnerability
Cisco Meeting Server Client Authentication Bypass Vulnerability
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) could allow an unauthenticated, remote attacker to masquerade as a legitimate user. This vulnerability is due to the XMPP service incorrectly processing a deprecated authentication scheme. A successful exploit could allow an attacker to access the system as another user.
Cisco has released software updates that address this vulnerability. Workarounds that address this vulnerability in some environments are available.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161012-msc
Cisco
Cisco Meeting Server Client Authentication Bypass Vulnerability
vendor_cisco
CVE-2016-6445 Cisco Meeting Server Client Authentication Bypass Vulnerability
CVE-2016-6445: Cisco Meeting Server Client Authentication Bypass Vulnerability
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) could allow an unauthenticated, remote attacker to masquerade as a legitimate user. This vulnerability is due to the XMPP service incorrectly processing a deprecated authentication scheme. A successful exploit could allow an attacker to access the system as another user. Cisco has released software updates that address this vulnerability.
CWE: CWE-20, CWE-20
Bug IDs: CSCvb62741
GHSA
GHSA-gcmr-695p-fx75: A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2
ghsa_unreviewed·2022-05-17
CVE-2016-6445 [CRITICAL] CWE-20 GHSA-gcmr-695p-fx75: A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18 and 1.9.x before 1.9.6 could allow an unauthenticated, remote attacker to masquerade as a legitimate user. This vulnerability is due to the XMPP service incorrectly processing a deprecated authentication scheme. A successful exploit could allow an attacker to access the system as another user.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161012-mschttp://www.securityfocus.com/bid/93517http://www.securitytracker.com/id/1037000http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161012-mschttp://www.securityfocus.com/bid/93517http://www.securitytracker.com/id/1037000
2016-10-27
Published