Lucene search

K
cveCiscoCVE-2009-2874
HistoryOct 16, 2009 - 4:30 p.m.

CVE-2009-2874

2009-10-1616:30:00
cisco
web.nvd.nist.gov
31
cve-2009-2874
timestend process
cisco
unified presence
denial of service
tcp connections
bug id cscsy17662

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.02

Percentile

88.9%

The TimesTenD process in Cisco Unified Presence 1.x, 6.x before 6.0(6), and 7.x before 7.0(4) allows remote attackers to cause a denial of service (process crash) via a large number of TCP connections to ports 16200 and 22794, aka Bug ID CSCsy17662.

Affected configurations

Nvd
Node
ciscounified_presence_serverMatch1.0
OR
ciscounified_presence_serverMatch1.0\(1\)
OR
ciscounified_presence_serverMatch1.0\(2\)
OR
ciscounified_presence_serverMatch1.0\(3\)
OR
ciscounified_presence_serverMatch6.0
OR
ciscounified_presence_serverMatch6.0\(2\)
OR
ciscounified_presence_serverMatch6.0\(3\)
OR
ciscounified_presence_serverMatch6.0\(4\)
OR
ciscounified_presence_serverMatch6.0\(5\)
OR
ciscounified_presence_serverMatch7.0
OR
ciscounified_presence_serverMatch7.0\(2\)
OR
ciscounified_presence_serverMatch7.0\(3\)
VendorProductVersionCPE
ciscounified_presence_server1.0cpe:2.3:a:cisco:unified_presence_server:1.0:*:*:*:*:*:*:*
ciscounified_presence_server1.0(1)cpe:2.3:a:cisco:unified_presence_server:1.0\(1\):*:*:*:*:*:*:*
ciscounified_presence_server1.0(2)cpe:2.3:a:cisco:unified_presence_server:1.0\(2\):*:*:*:*:*:*:*
ciscounified_presence_server1.0(3)cpe:2.3:a:cisco:unified_presence_server:1.0\(3\):*:*:*:*:*:*:*
ciscounified_presence_server6.0cpe:2.3:a:cisco:unified_presence_server:6.0:*:*:*:*:*:*:*
ciscounified_presence_server6.0(2)cpe:2.3:a:cisco:unified_presence_server:6.0\(2\):*:*:*:*:*:*:*
ciscounified_presence_server6.0(3)cpe:2.3:a:cisco:unified_presence_server:6.0\(3\):*:*:*:*:*:*:*
ciscounified_presence_server6.0(4)cpe:2.3:a:cisco:unified_presence_server:6.0\(4\):*:*:*:*:*:*:*
ciscounified_presence_server6.0(5)cpe:2.3:a:cisco:unified_presence_server:6.0\(5\):*:*:*:*:*:*:*
ciscounified_presence_server7.0cpe:2.3:a:cisco:unified_presence_server:7.0:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.6

Confidence

High

EPSS

0.02

Percentile

88.9%