CVE-2019-1678

Severity
4.3MEDIUM
EPSS
0.4%
top 40.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 7
Latest updateMay 13

Description

A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of service (DoS) to Cisco Meetings application users who are paired with a Session Initiation Protocol (SIP) endpoint. The vulnerability is due to improper validation of coSpaces configuration parameters. An attacker could exploit this vulnerability by inserting crafted strings in specific coSpace parameters. An exploit could allow the attacker to prevent clients from joining a confere

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:LExploitability: 2.8 | Impact: 1.4

Affected Packages2 packages

CVEListV5cisco/cisco_meeting_serverunspecified2.4.3

🔴Vulnerability Details

2
GHSA
GHSA-xvgf-4x2w-f753: A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of service (DoS) to Cisco Meetings app2022-05-13
CVEList
Cisco Meeting Server Denial of Service Vulnerability2019-02-07

📋Vendor Advisories

1
Cisco
Cisco Meeting Server Denial of Service Vulnerability2019-02-06