CVE-2013-5488
Summary
| CVE | CVE-2013-5488 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-09-12 13:28:00 UTC |
| Updated | 2017-08-29 01:33:00 UTC |
| Description | Cisco Common Services, as used in Cisco Prime LAN Management Solution (LMS), Cisco Security Manager, Cisco Unified Service Monitor, and Cisco Unified Operations Manager, does not properly interact with the ActiveMQ component, which allows remote attackers to cause a denial of service (memory consumption) via simultaneous TCP sessions, aka Bug IDs CSCuh54766, CSCuh01267, CSCuh95976, and CSCuh95969. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cisco | Prime Lan Management Solution | - | All | All | All |
| Application | Cisco | Prime Lan Management Solution | - | All | All | All |
| Application | Cisco | Security Manager | All | All | All | All |
| Application | Cisco | Security Manager | All | All | All | All |
| Application | Cisco | Unified Operations Manager | - | All | All | All |
| Application | Cisco | Unified Operations Manager | - | All | All | All |
| Application | Cisco | Unified Service Monitor | - | All | All | All |
| Application | Cisco | Unified Service Monitor | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Security Notice: Common Services ActiveMQ Denial of Service Vulnerability | CISCO | tools.cisco.com | Vendor Advisory |
| Multiple Cisco Products ActiveMQ CVE-2013-5488 Denial of Service Vulnerability | BID | www.securityfocus.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Multiple Cisco Products Common Services ActiveMQ Denial of Service Vulnerability | CONFIRM | tools.cisco.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.