Lucene search

K
nvd[email protected]NVD:CVE-2008-4543
HistoryOct 13, 2008 - 8:00 p.m.

CVE-2008-4543

2008-10-1320:00:02
CWE-399
web.nvd.nist.gov
2

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

High

EPSS

0.021

Percentile

89.3%

Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote attackers to cause a denial of service (session exhaustion) via a large number of connections.

Affected configurations

Nvd
Node
ciscounityRange4.2\(1\)
OR
ciscounityRange5.0\(1\)
OR
ciscounityRange7.0\(2\)
OR
ciscounityMatch4.0
OR
ciscounityMatch4.0\(1\)
OR
ciscounityMatch4.0\(2\)
OR
ciscounityMatch4.0\(3\)
OR
ciscounityMatch4.0\(3\)sr2
OR
ciscounityMatch4.0\(4\)
OR
ciscounityMatch4.0\(4\)sr1
OR
ciscounityMatch4.0\(5\)
OR
ciscounityMatch4.1\(1\)
OR
ciscounityMatch5.0
OR
ciscounityMatch7.0
VendorProductVersionCPE
ciscounity*cpe:2.3:a:cisco:unity:*:*:*:*:*:*:*:*
ciscounity4.0cpe:2.3:a:cisco:unity:4.0:*:*:*:*:*:*:*
ciscounity4.0(1)cpe:2.3:a:cisco:unity:4.0\(1\):*:*:*:*:*:*:*
ciscounity4.0(2)cpe:2.3:a:cisco:unity:4.0\(2\):*:*:*:*:*:*:*
ciscounity4.0(3)cpe:2.3:a:cisco:unity:4.0\(3\):*:*:*:*:*:*:*
ciscounity4.0(3)cpe:2.3:a:cisco:unity:4.0\(3\):sr2:*:*:*:*:*:*
ciscounity4.0(4)cpe:2.3:a:cisco:unity:4.0\(4\):*:*:*:*:*:*:*
ciscounity4.0(4)cpe:2.3:a:cisco:unity:4.0\(4\):sr1:*:*:*:*:*:*
ciscounity4.0(5)cpe:2.3:a:cisco:unity:4.0\(5\):*:*:*:*:*:*:*
ciscounity4.1(1)cpe:2.3:a:cisco:unity:4.1\(1\):*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

7.1

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

AI Score

6.8

Confidence

High

EPSS

0.021

Percentile

89.3%

Related for NVD:CVE-2008-4543