Lucene search

K
cveCiscoCVE-2009-2045
HistoryJun 25, 2009 - 1:30 a.m.

CVE-2009-2045

2009-06-2501:30:01
cisco
web.nvd.nist.gov
43
cisco
video surveillance
stream manager
firmware
denial of service
vulnerability
cisco video surveillance services platforms
cisco video surveillance integrated services platforms
udp packet
port 37000
xvcrman process
cve-2009-2045
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

Low

EPSS

0.006

Percentile

77.8%

The Cisco Video Surveillance Stream Manager firmware before 5.3, as used on Cisco Video Surveillance Services Platforms and Video Surveillance Integrated Services Platforms, allows remote attackers to cause a denial of service (reboot) via a malformed payload in a UDP packet to port 37000, related to the xvcrman process, aka Bug ID CSCsj47924.

Affected configurations

Nvd
Node
ciscovideo_surveillance_stream_managerRange5.2
OR
ciscovideo_surveillance_stream_managerMatch5.0
OR
ciscovideo_surveillance_stream_managerMatch5.1
AND
ciscovideo_surveillance_integrated_services_platform
VendorProductVersionCPE
ciscovideo_surveillance_stream_manager*cpe:2.3:a:cisco:video_surveillance_stream_manager:*:*:*:*:*:*:*:*
ciscovideo_surveillance_stream_manager5.0cpe:2.3:a:cisco:video_surveillance_stream_manager:5.0:*:*:*:*:*:*:*
ciscovideo_surveillance_stream_manager5.1cpe:2.3:a:cisco:video_surveillance_stream_manager:5.1:*:*:*:*:*:*:*
ciscovideo_surveillance_integrated_services_platform*cpe:2.3:h:cisco:video_surveillance_integrated_services_platform:*:*:*:*:*:*:*:*

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

Low

EPSS

0.006

Percentile

77.8%