7.1
CVSSv2

CVE-2015-0772

Published: 12/06/2015 Updated: 04/01/2017
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco TelePresence Video Communication Server (VCS) X8.5RC4 allows remote malicious users to cause a denial of service (CPU consumption or device outage) via a crafted SDP parameter-negotiation request in an SDP session during a SIP connection, aka Bug ID CSCut42422.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco telepresence video communication server software x8.5

Vendor Advisories

A vulnerability in the Session Description Protocol (SDP) parser of the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause the Cisco VCS device to become unreachable due to a denial of service (DoS) attack caused by high CPU utilization The vulnerability is due to a parsing error in the SD ...