CVE-2017-6790
Summary
| CVE | CVE-2017-6790 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-08-17 20:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the targeted appliance. The vulnerability is due to excessive SIP traffic sent to the device. An attacker could exploit this vulnerability by transmitting large volumes of SIP traffic to the VCS. An exploit could allow the attacker to cause a complete DoS condition on the targeted system. Cisco Bug IDs: CSCve32897. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cisco | Telepresence Video Communication Server | x8.7 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.1 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.2 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.3 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.8 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.9 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.1 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.2 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.7.3 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.8 | All | All | All |
| Application | Cisco | Telepresence Video Communication Server | x8.9 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco TelePresence Video Communication Server CVE-2017-6790 Denial of Service Vulnerability | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Cisco TelePresence Video Communication Server SIP Processing Flaw Lets Remote Users Deny Service - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Cisco TelePresence Video Communication Server Denial of Service Vulnerability | CISCO | tools.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.