NA

CVE-2023-20255

Published: 01/11/2023 Updated: 25/01/2024
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A vulnerability in an API of the Web Bridge feature of Cisco Meeting Server could allow an unauthenticated, remote malicious user to cause a denial of service (DoS) condition. This vulnerability is due to insufficient validation of HTTP requests. An attacker could exploit this vulnerability by sending crafted HTTP packets to an affected device. A successful exploit could allow the malicious user to cause a partial availability condition, which could cause ongoing video calls to be dropped due to the invalid packets reaching the Web Bridge.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco meeting server

Vendor Advisories

A vulnerability in an API of the Web Bridge feature of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition This vulnerability is due to insufficient validation of HTTP requests An attacker could exploit this vulnerability by sending crafted HTTP packets to an affected device A success ...