Vulnerability Intelligence Report
CVE-2012-3073
The IP implementation on Cisco TelePresence Multipoint Switch before 1.8.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server 1.8 and earlier allows remote attackers to cause a denial of service (networking outage or process crash) via (1) malformed IP packets, (2) a high rate of TCP connection requests, or (3) a high rate of TCP connection terminations, aka Bug IDs CSCti21830, CSCti21851, CSCtj19100, CSCtj19086, CSCtj19078, CSCty11219, CSCty11299, CSCty11323, and CSCty11338.
No Active Exploit Signals
CVSS Base Score
7.8
HIGH
EPSS Probability:1.80%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| cisco | telepresence_multipoint_switch_software | 1.0.4.0, 1.0.4.0\(21\), 1.1.0, 1.1.0\(254\), 1.1.1, 1.1.1\(30\), 1.1.2, 1.1.2\(6\), 1.5.0, 1.5.0\(222\), 1.5.1, 1.5.1\(2\), 1.5.2, 1.5.2\(21\), 1.5.3, 1.5.3.12, 1.5.4, 1.5.4\(4\), 1.5.5, 1.5.5\(1\), 1.5.6, 1.5.6\(1\), 1.6.0, 1.6.0\(108\), 1.6.1, 1.6.1\(2\), 1.6.2, 1.6.2\(3\), 1.6.3, 1.6.3\(2\), 1.6.4, 1.6.4\(3\), 1.7.0, 1.7.0.1\(5\), 1.7.1\(15\), 1.7.2\(75\), 1.7.3\(2\), 1.8.0 |
| cisco | telepresence_multipoint_switch | all |
| cisco | telepresence_system_software | 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2\(4937\), 1.7.2.1\(2\), 1.7.4\(270\), 1.7.5\(42\), 1.7.6\(4\), 1.8.0\(55\), 1.8.1\(34\), 1.8.2\(11\), 1.8.3\(4\), 1.9.0\(46\) |
| cisco | telepresence_system_1300_65 | all |
| cisco | telepresence_system_3000 | all |
| cisco | telepresence_system_3010 | all |
| cisco | telepresence_system_3200 | all |
| cisco | telepresence_system_3210 | all |
| cisco | telepresence_system_t3 | all |
| cisco | telepresence_system_tx1300_47 | all |
| cisco | telepresence_system_tx1310_65 | all |
| cisco | telepresence_system_tx9000 | all |
| cisco | telepresence_system_tx9200 | all |
| cisco | telepresence_manager | 1.1.0.0, 1.1.0.0\(209\), 1.2.0.0, 1.2.0.0\(200\), 1.3.2\(466\), 1.4.0\(279\), 1.5.1\(420\), 1.5.2\(423\), 1.6.0\(220\), 1.6.2\(64\), 1.6.3\(113\), 1.6.5\(167\), 1.7.1\(732\), 1.7.2\(256\), 1.7.3.1, 1.7.4, 1.7.5\(62\), 1.8.0\(582\) |
| cisco | telepresence_recording_server | 1.6.1\(2\), 1.6.2\(31\), 1.6.3\(4\), 1.7.0\(190\), 1.7.1\(22\), 1.7.2.1, 1.7.3\(3\) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
1.799%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Cisco Systems, Inc. · Hosted Service · USA |
| Reserved | 2012-05-30T00:00:00 |
| Published | 2012-07-12T10:00:00 |
| Last Updated | 2024-09-16T16:52:38 |
Community Chatter & Buzz