CVE-2008-6564: High severity Nortel Communication Server 1000 vulnerability
Nortel UNIStim protocol, as used in Communication Server 1000 and other products, uses predictable sequence numbers, which allows remote attackers to hijack sessions via sniffing or brute force attacks.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6564?
CVE-2008-6564 has a medium severity rating due to the potential for session hijacking through predictable sequence numbers.
How do I fix CVE-2008-6564?
To fix CVE-2008-6564, update your Nortel Communication Server 1000 and UNIStim protocol implementations to the latest versions that address this vulnerability.
What systems are affected by CVE-2008-6564?
CVE-2008-6564 affects Nortel's Communication Server 1000 and any systems utilizing the UNIStim protocol.
Can CVE-2008-6564 be exploited remotely?
Yes, CVE-2008-6564 can be exploited remotely by attackers who can sniff or brute force the predictable sequence numbers.
What are the implications of CVE-2008-6564?
The implications of CVE-2008-6564 include the potential for unauthorized access to sensitive communications and session hijacking.