CVE-2013-3461
Severity CVSS v4.0:
Pending analysis
Type:
CWE-399
Resource Management Errors
Publication date:
25/08/2013
Last modified:
11/04/2025
Description
Cisco Unified Communications Manager (Unified CM) 8.5(x) and 8.6(x) before 8.6(2a)su3 and 9.x before 9.1(1) does not properly restrict the rate of SIP packets, which allows remote attackers to cause a denial of service (memory and CPU consumption, and service disruption) via a flood of UDP packets to port 5060, aka Bug ID CSCub35869.
Impact
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:cisco:unified_communications_manager:9.0\(1\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\)su1:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\)su2:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\)su3:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\)su4:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.5\(1\)su5:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(1\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(1a\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(2\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(2a\):*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(2a\)su1:*:*:*:*:*:*:* | ||
cpe:2.3:a:cisco:unified_communications_manager:8.6\(2a\)su2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page