7.8
CVSSv2

CVE-2010-2839

Published: 26/08/2010 Updated: 09/09/2010
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

SIPD in Cisco Unified Presence 6.x prior to 6.0(7) and 7.x prior to 7.0(8) allows remote malicious users to cause a denial of service (stack memory corruption and process failure) via a malformed SIP message, aka Bug ID CSCtd14474.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified presence server 6.0\\(2\\)

cisco unified presence server 6.0\\(3\\)

cisco unified presence server 7.0\\(4\\)

cisco unified presence server 7.0\\(5\\)

cisco unified presence server 7.0\\(2\\)

cisco unified presence server 7.0\\(3\\)

cisco unified presence server 6.0\\(4\\)

cisco unified presence server 6.0\\(5\\)

cisco unified presence server 7.0\\(6\\)

cisco unified presence server 7.0\\(7\\)

cisco unified presence server 6.0\\(6\\)

cisco unified presence server 7.0

cisco unified presence server 6.0

cisco unified presence server 6.0\\(4.1101-5\\)

cisco unified presence server 6.0\\(5.1101-1\\)

cisco unified presence server 6.0.5.1102-1

cisco unified presence server 6.0\\(2.1101\\)

cisco unified presence server 6.0\\(3.1101-2\\)

cisco unified presence server 6.0\\(5.1103-2\\)

cisco unified presence server 7.0.3.10103-2

cisco unified presence server 7.0.3.10102-3

cisco unified presence server 7.0.4.10101-2

Vendor Advisories

Cisco Unified Presence contains two denial of service (DoS) vulnerabilities that affect the processing of Session Initiation Protocol (SIP) messages Exploitation of these vulnerabilities could cause an interruption of presence services Cisco has released software updates that address these vulnerabilities There are no workarounds for th ...