First published: Mon Nov 04 2013(Updated: )
The Java process in the Impact server in Cisco Prime Central for Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (process crash) via a flood of TCP packets, aka Bug ID CSCug57345.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Hosted Collaboration Solution |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5564 is considered to be a medium severity vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2013-5564, ensure that you implement network protection mechanisms to filter out excessive TCP packet floods.
CVE-2013-5564 allows remote attackers to crash the Java process, resulting in a denial of service for the impacted Cisco Prime Central application.
Yes, CVE-2013-5564 can be exploited remotely by sending a flood of TCP packets to the vulnerable system.
CVE-2013-5564 affects all versions of Cisco Prime Central for Hosted Collaboration Solution that use the vulnerable Java process.