cbcvebase.
CVE-2016-6445
published 2016-10-27

CVE-2016-6445: A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18…

PriorityP262critical9.1CVSS 3.0
AVNACLPRNUINSUCHIHAN
EPSS
2.51%
83.0th percentile
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of the Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18 and 1.9.x before 1.9.6 could allow an unauthenticated, remote attacker to masquerade as a legitimate user. This vulnerability is due to the XMPP service incorrectly processing a deprecated authentication scheme. A successful exploit could allow an attacker to access the system as another user.

Affected

10 ranges
VendorProductVersion rangeFixed in
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server
ciscomeeting_server

Detection & IOCsextracted from sources · hover to see the quote

  • The XMPP service incorrectly processes a deprecated authentication scheme, allowing unauthenticated remote attackers to masquerade as legitimate users. Monitor XMPP authentication attempts using deprecated/non-standard authentication schemes against Cisco Meeting Server.
  • Track Cisco Bug ID CSCvb62741 for vendor patch and detection guidance related to this authentication bypass in the CMS XMPP service.
  • ·Affected versions include Cisco Meeting Server (CMS) before 2.0.6 and Acano Server before 1.8.18 and 1.9.x before 1.9.6. Ensure these versions are identified and patched or mitigated.
  • ·Workarounds are available for some environments as an interim mitigation prior to patching.

CVSS provenance

nvdv3.09.1CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
vendor_cisco6.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.