CVE-2015-4318: Medium severity cisco telepresence video communication server firmware vulnerability
Published Aug 20, 2015
·Updated
Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.2 allows remote attackers to cause a denial of service via invalid variables in a GET request, aka Bug ID CSCuv40528.
Affected Software
1 affected component
Cisco Telepresence Video Communication Server Software=x8.5.2
Event History
Aug 20, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4318?
CVE-2015-4318 is classified as a denial of service vulnerability.
2
How do I fix CVE-2015-4318?
To fix CVE-2015-4318, you should upgrade to a later version of Cisco TelePresence Video Communication Server that addresses this vulnerability.
3
What type of attack does CVE-2015-4318 facilitate?
CVE-2015-4318 enables remote attackers to induce a denial of service through malformed GET requests.
4
Which versions of Cisco software are affected by CVE-2015-4318?
CVE-2015-4318 specifically affects Cisco TelePresence Video Communication Server version X8.5.2.
5
Is CVE-2015-4318 an exploitable vulnerability?
Yes, CVE-2015-4318 is exploitable by remote attackers, allowing them to disrupt service.