HIGH · 7.8

CVE-2013-3377

Cisco TelePresence TC Software before 5.1.7 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCue01743.

Vulnerability Description

Cisco TelePresence TC Software before 5.1.7 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCue01743.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoTelepresence Tc Software<= 5.1.6
CiscoIp Video Phone E20-
CiscoTelepresence Codec C40-
CiscoTelepresence Codec C60-
CiscoTelepresence Codec C90-
CiscoTelepresence Ex60-
CiscoTelepresence Ex90-
CiscoTelepresence Mx200-
CiscoTelepresence Mx300-
CiscoTelepresence Profile 55-
CiscoTelepresence Profile 65-
CiscoTelepresence Quick Set C20-
CiscoTelepresence Quick Set Sx20-
CiscoTelepresence Te Software<= 4.1.2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-3377?

CVE-2013-3377 is a vulnerability with a CVSS score of 7.8 (HIGH). Cisco TelePresence TC Software before 5.1.7 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCue01743.

How severe is CVE-2013-3377?

CVE-2013-3377 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-3377?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Telepresence Tc Software, Cisco Ip Video Phone E20, Cisco Telepresence Codec C40, Cisco Telepresence Codec C60, Cisco Telepresence Codec C90.