QID 316991
Date Published: 2021-07-01
QID 316991: Cisco Meeting Server API Denial of Service Vulnerability(cisco-sa-meetingserver-dos-NzVWMMQT)
A vulnerability in the API of Cisco Meeting Server could allow an authenticated,
remote attacker to cause a denial of service (DoS) condition on an affected device.
Affected Products
Cisco Meeting Server releases 3.1 and 3.1.1.
QID Detection Logic (Unauthenticated):
The QID matches for vulnerable version of Cisco Meeting Server (CMS) retrieved via SNMP request.
QID Detection Logic (Authenticated):
The QID matches for vulnerable version of Cisco Meeting Server (CMS) based on the output from "version" command.
A successful exploit could allow the attacker to cause all participants on a call to be disconnected, resulting in a DoS condition.
Update to Cisco Meeting Server releases 3.1.2 and later , Refer link for more details
Customers are advised to refer to cisco-sa-meetingserver-dos-NzVWMMQT for more information.
- cisco-sa-meetingserver-dos-NzVWMMQT -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-meetingserver-dos-NzVWMMQT
CVEs related to QID 316991
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-meetingserver-dos-NzVWMMQT |
|