CVE-2012-0361

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
02/05/2012
Last modified:
11/04/2025

Description

The sccp-protocol component in Cisco IP Communicator (CIPC) 7.0 through 8.6 does not limit the rate of SCCP messages to Cisco Unified Communications Manager (CUCM), which allows remote attackers to cause a denial of service via vectors that trigger (1) on hook and (2) off hook messages, as demonstrated by a Plantronics headset, aka Bug ID CSCti40315.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:ip_communicator:7.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(1\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(2\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(3\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(4\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(5\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:7.0\(6\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:ip_communicator:8.6:*:*:*:*:*:*:*