CVE-2017-6790: High severity Cisco TelePresence Video Communication Server vulnerability
A vulnerability in the Session Initiation Protocol (SIP) on the Cisco TelePresence Video Communication Server (VCS) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the targeted appliance. The vulnerability is due to excessive SIP traffic sent to the device. An attacker could exploit this vulnerability by transmitting large volumes of SIP traffic to the VCS. An exploit could allow the attacker to cause a complete DoS condition on the targeted system. Cisco Bug IDs: CSCve32897.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-6790?
The severity of CVE-2017-6790 is classified as high due to its potential to cause a denial of service (DoS) condition.
How do I fix CVE-2017-6790?
To fix CVE-2017-6790, users should upgrade their Cisco TelePresence Video Communication Server to a patched version provided by Cisco.
What versions are affected by CVE-2017-6790?
CVE-2017-6790 affects Cisco TelePresence Video Communication Server versions x8.7, x8.7.1, x8.7.2, x8.7.3, x8.8, and x8.9.
Can CVE-2017-6790 be exploited remotely?
Yes, CVE-2017-6790 can be exploited by an unauthenticated remote attacker.
What type of vulnerability is CVE-2017-6790?
CVE-2017-6790 is a denial of service (DoS) vulnerability related to excessive SIP traffic.