CVE-2013-1228: Medium severity cisco jabber for windows vulnerability

Published Sep 6, 2013
·
Updated

Cisco Jabber on Windows does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and modify the client-server data stream via a crafted certificate, aka Bug ID CSCug30280.

Affected Software

1 affected component
Cisco Jabber Windows

Event History

Sep 6, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-2013-1228?

CVE-2013-1228 is classified as a high severity vulnerability due to its potential for exploitation by man-in-the-middle attacks.

2

How do I fix CVE-2013-1228?

To fix CVE-2013-1228, ensure that you are using the latest version of Cisco Jabber that includes the security patch addressing SSL certificate validation.

3

What type of attacks can exploit CVE-2013-1228?

CVE-2013-1228 can be exploited for man-in-the-middle attacks, allowing attackers to intercept and modify communications.

4

Which software is affected by CVE-2013-1228?

CVE-2013-1228 affects Cisco Jabber on Windows platforms.

5

What is the impact of CVE-2013-1228 on users?

The impact of CVE-2013-1228 on users is the risk of data being intercepted and manipulated through unverified SSL connections.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203