Vulnslist

find the latest Cisco vulnerabilities

Multiple Vulnerabilities in Cisco TelePresence System MXP Series

cisco-sa-20140430-mxp · High · Published · Updated

Cisco TelePresence System MXP Series Software contains the following vulnerabilities: Three SIP denial of service vulnerabilities Three H.225 denial of service vulnerabilities Successful exploitation of these vulnerabilities may allow an attacker to cause system instability and the affected system to reload. Note: This security advisory does not provide information about the OpenSSL TLS Heartbeat Read Overrun Vulnerability identified by CVE-2014-0160 (also known as Heartbleed).  For additional information regarding Cisco products affected by the Heartbleed vulnerability, refer to the Cisco Security Advisory available at the following link:  https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140409-heartbleed Cisco has released software updates that address these vulnerabilities. There are no workarounds that mitigate these vulnerabilities. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140430-mxp

Cisco advisory · CSAF JSON

Workarounds

There are no workarounds that mitigate these vulnerabilities.

CVEsCVE-2014-0160, CVE-2014-2156, CVE-2014-2157, CVE-2014-2158, CVE-2014-2159, CVE-2014-2160, CVE-2014-2161
Cisco Bug IDsCSCtq78722, CSCty45720, CSCty45731, CSCty45733, CSCty45739, CSCty45745
CVSS ScoreBase 7.8
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C
Base 7.1 AV:N/AC:M/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C
Product Names From Source
Cisco Telepresence MXP Series Endpoints

Related Products

Product CVE Evidence
Cisco Telepresence MXP Series Endpoints CVE-2014-0160 Cisco OpenVuln
Cisco TelePresence CVE-2014-0160 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2161 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2160 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2159 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2158 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2157 Cisco OpenVuln
Cisco Telepresence MXP Series Endpoints CVE-2014-2156 Cisco OpenVuln
Cisco TelePresence CVE-2014-2161 Cisco OpenVuln
Cisco TelePresence CVE-2014-2160 Cisco OpenVuln
Cisco TelePresence CVE-2014-2159 Cisco OpenVuln
Cisco TelePresence CVE-2014-2158 Cisco OpenVuln
Cisco TelePresence CVE-2014-2157 Cisco OpenVuln
Cisco TelePresence CVE-2014-2156 Cisco OpenVuln