7.8
CVSSv2

CVE-2012-3935

Published: 12/09/2012 Updated: 29/08/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco Unified Presence (CUP) prior to 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) prior to 5.3 allow remote malicious users to cause a denial of service (process crash) via a crafted XMPP stream header, aka Bug ID CSCtu32832.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified presence

cisco unified presence 8.6\\(1\\)

cisco unified presence 8.0\\(1\\)

cisco unified presence 1.0

cisco unified presence 8.5\\(3\\)

cisco unified presence 7.0\\(6\\)

cisco unified presence 6.0\\(1\\)

cisco unified presence 6.0\\(2\\)

cisco unified presence 7.0\\(1\\)

cisco unified presence 8.0\\(2\\)

cisco unified presence 6.0_1

cisco unified presence 8.5\\(1\\)

cisco unified presence 7.0\\(9\\)

cisco unified presence 7.0\\(3\\)

cisco unified presence 6.0\\(6\\)

cisco unified presence 6.0\\(7\\)

cisco unified presence 7.0

cisco unified presence 7.0\\(2\\)

cisco unified presence 8.0\\(4\\)

cisco unified presence 6.0

cisco unified presence 6.0_2

cisco unified presence 7.0\\(7\\)

cisco unified presence 7.0\\(8\\)

cisco unified presence 6.0\\(3\\)

cisco unified presence 6.0\\(4\\)

cisco unified presence 6.0\\(5\\)

cisco unified presence 8.0\\(3\\)

cisco unified presence 8.0

cisco unified presence 8.5\\(2\\)

cisco unified presence 8.5

cisco unified presence 7.0\\(4\\)

cisco unified presence 7.0\\(5\\)

cisco jabber extensible communications platform

Vendor Advisories

A denial of service (DoS) vulnerability exists in Cisco Unified Presence and Jabber Extensible Communications Platform (Jabber XCP) An unauthenticated, remote attacker could exploit this vulnerability by sending a specially crafted Extensible Messaging and Presence Protocol (XMPP) stream header to an affected server Successful exploitation of thi ...