Cisco IP Communicator CVE-2012-0361 Weak Authentication Vulnerability

description-logoDescription

The sccp-protocol component in Cisco IP Communicator (CIPC) 7.0 through 8.6 does not limit the rate of SCCP messages to Cisco Unified Communications Manager (CUCM), which allows remote attackers to cause a denial of service via vectors that trigger (1) on hook and (2) off hook messages, as demonstrated by a Plantronics headset, aka Bug ID CSCti40315. NOTE: Cisco IP Communicator is also no longer being updated and supported.

affected-products-logoAffected Applications

Cisco IP Communicator

CVE References

CVE-2012-0361