CVE-2017-6790

CWE-3994 documents4 sources
Severity
6.8MEDIUM
EPSS
1.8%
top 17.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 17
Latest updateMay 13

Description

A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the targeted appliance. The vulnerability is due to excessive SIP traffic sent to the device. An attacker could exploit this vulnerability by transmitting large volumes of SIP traffic to the VCS. An exploit could allow the attacker to cause a complete DoS condition on the targeted system

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:HExploitability: 2.2 | Impact: 4.0

🔴Vulnerability Details

2
GHSA
GHSA-mq47-xg5g-jxq9: A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, re2022-05-13
CVEList
CVE-2017-6790: A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, re2017-08-17

📋Vendor Advisories

1
Cisco
Cisco TelePresence Video Communication Server Denial of Service Vulnerability2017-08-16
CVE-2017-6790 (MEDIUM CVSS 6.8) | A vulnerability in the Session Init | cvebase.io