Cisco TelePresence Supervisor MSE 8050 TCP Connection Request Saturation Remote DoS

high Nessus Plugin ID 69019

Synopsis

The remote host is affected by a denial of service vulnerability.

Description

According to version information obtained by examining its FTP service banner, the remote Cisco TelePresence device is affected by a remote denial of service vulnerability that can be triggered by overwhelming the device with TCP connection requests.

Solution

Upgrade software to version 2.3(1.31) or later.

See Also

http://www.nessus.org/u?ee4dbe26

Plugin Details

Severity: High

ID: 69019

File Name: cisco_telepresence_supervisor_8050_mse_dos.nasl

Version: 1.5

Type: remote

Family: CISCO

Published: 7/23/2013

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: High

Base Score: 7.8

Temporal Score: 5.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Information

CPE: cpe:/h:cisco:telepresence_supervisor_mse_8050

Required KB Items: cisco/supervisor_mse/8050

Exploit Ease: No known exploits are available

Patch Publication Date: 5/15/2013

Vulnerability Publication Date: 5/15/2013

Reference Information

CVE: CVE-2013-1236

BID: 59879

IAVB: 2013-B-0055