Vulnslist

find the latest Cisco vulnerabilities

Cisco Prime Collaboration Provisioning Tool Web Portal Repeated Bad Login Attempts Denial of Service Vulnerability

cisco-sa-20180221-pcpt · Medium · Published · Updated

A vulnerability in the web portal of the Cisco Prime Collaboration Provisioning Tool could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition for individual users. The vulnerability is due to weak login controls. An attacker could exploit this vulnerability by using a brute-force attack. A successful exploit could allow the attacker to restrict user access. Manual administrative intervention is required to restore access. There are no workarounds that address this vulnerability. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180221-pcpt

Workarounds

There are no workarounds that address this vulnerability.

CVEsCVE-2018-0204
Cisco Bug IDsCSCvd07264
CVSS ScoreBase 5.3
Base 5.3 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L/E:X/RL:X/RC:X
Product Names From Source
Cisco Prime Collaboration Provisioning

Related Products

Product CVE Evidence
Cisco Prime Collaboration CVE-2018-0204 Cisco OpenVuln
Cisco Prime Collaboration Provisioning CVE-2018-0204 Cisco OpenVuln