7.1
CVSSv2

CVE-2013-5526

Published: 10/10/2013 Updated: 22/09/2016
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco 9900 fourth-generation IP phones do not properly perform SDP negotiation, which allows remote malicious users to cause a denial of service (device reboot) via crafted SDP packets, aka Bug ID CSCuf06698.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco unified ip phone 9971

cisco unified ip phone 9951

Vendor Advisories

A vulnerability in the SDP negotiation logic of the Cisco Cisco Unified IP Phone 9951, Cisco Unified IP Phone 9971 and the Cisco Unified IP Phone 8961 could allow an unauthenticated, remote attacker to cause the phone to reboot The vulnerability is due to improper processing of crafted SDP packets An attacker could exploit this vulnerability by ...