CVE-2013-3459: High severity Cisco Unified Communications Manager vulnerability
Cisco Unified Communications Manager (Unified CM) 7.1(x) before 7.1(5b)su6a does not properly handle errors, which allows remote attackers to cause a denial of service (service disruption) via malformed registration messages, aka Bug ID CSCuf93466.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3459?
CVE-2013-3459 has a medium severity rating, indicating a moderate risk of denial of service due to malformed registration messages.
How do I fix CVE-2013-3459?
To fix CVE-2013-3459, upgrade Cisco Unified Communications Manager to version 7.1(5b)su6 or later.
What products are affected by CVE-2013-3459?
CVE-2013-3459 affects various versions of Cisco Unified Communications Manager 7.1, including versions 7.1(2a) through 7.1(5b).
What type of vulnerability is CVE-2013-3459?
CVE-2013-3459 is a denial of service vulnerability that arises from improper error handling.
Can an attacker remotely exploit CVE-2013-3459?
Yes, an attacker can remotely exploit CVE-2013-3459 by sending malformed registration messages to disrupt services.