Denial of Service Vulnerability in Cisco TelePresence Video Communication Server
CVE-2016-1338
6.5MEDIUM
Key Information:
- Vendor
- Cisco
- Vendor
- CVE Published:
- 12 March 2016
Summary
A vulnerability exists in the Cisco TelePresence Video Communication Server (VCS) versions X8.5.1 and X8.5.2, which could allow remote authenticated users to create a denial of service scenario. This is achieved by sending a specially crafted Session Initiation Protocol (SIP) message that disrupts VoIP communications, leading to potential service outages. Administrators should take immediate action to update their systems to mitigate the risks associated with this vulnerability.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved