ID

VAR-201304-0286


CVE

CVE-2013-1174


TITLE

Cisco Hosted Collaboration Solution Service disruption in (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2013-002153

DESCRIPTION

Cisco Tivoli Business Service Manager (TBSM) in Hosted Collaboration Mediation (HCM) in Cisco Hosted Collaboration Solution allows remote attackers to cause a denial of service (temporary service hang) by sending many TCP packets to certain ports, aka Bug ID CSCue03703. The Cisco Prime Central for HCS Assurance is prone to a denial-of-service vulnerability. Successfully exploiting this issue allows remote attackers to cause denial-of-service conditions. This issue is being tracked by Cisco Bug ID CSCue03703

Trust: 2.07

sources: NVD: CVE-2013-1174 // JVNDB: JVNDB-2013-002153 // BID: 58907 // VULHUB: VHN-61176 // VULMON: CVE-2013-1174

AFFECTED PRODUCTS

vendor:ciscomodel:hosted collaboration solutionscope:eqversion: -

Trust: 1.6

vendor:ciscomodel:hosted collaboration solutionscope:eqversion:of cisco tivoli business service manager version 9.0

Trust: 0.8

vendor:ciscomodel:prime central for hcs assurancescope:eqversion:9.0

Trust: 0.3

sources: BID: 58907 // JVNDB: JVNDB-2013-002153 // CNNVD: CNNVD-201304-029 // NVD: CVE-2013-1174

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2013-1174
value: MEDIUM

Trust: 1.0

NVD: CVE-2013-1174
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201304-029
value: MEDIUM

Trust: 0.6

VULHUB: VHN-61176
value: MEDIUM

Trust: 0.1

VULMON: CVE-2013-1174
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2013-1174
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

VULHUB: VHN-61176
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-61176 // VULMON: CVE-2013-1174 // JVNDB: JVNDB-2013-002153 // CNNVD: CNNVD-201304-029 // NVD: CVE-2013-1174

PROBLEMTYPE DATA

problemtype:CWE-119

Trust: 1.9

sources: VULHUB: VHN-61176 // JVNDB: JVNDB-2013-002153 // NVD: CVE-2013-1174

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201304-029

TYPE

buffer overflow

Trust: 0.6

sources: CNNVD: CNNVD-201304-029

CONFIGURATIONS

sources: JVNDB: JVNDB-2013-002153

PATCH

title:Cisco Tivoli Business Service Manager Denial of Service Vulnerabilityurl:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1174

Trust: 0.8

title:28840url:http://tools.cisco.com/security/center/viewAlert.x?alertId=28840

Trust: 0.8

title:Cisco: Cisco Tivoli Business Service Manager Denial of Service Vulnerabilityurl:https://vulmon.com/vendoradvisory?qidtp=cisco_security_advisories_and_alerts_ciscoproducts&qid=Cisco-SA-20130406-CVE-2013-1174

Trust: 0.1

sources: VULMON: CVE-2013-1174 // JVNDB: JVNDB-2013-002153

EXTERNAL IDS

db:NVDid:CVE-2013-1174

Trust: 2.9

db:JVNDBid:JVNDB-2013-002153

Trust: 0.8

db:CNNVDid:CNNVD-201304-029

Trust: 0.7

db:SECUNIAid:52880

Trust: 0.6

db:CISCOid:20130404 CISCO TIVOLI BUSINESS SERVICE MANAGER DENIAL OF SERVICE VULNERABILITY

Trust: 0.6

db:BIDid:58907

Trust: 0.5

db:VULHUBid:VHN-61176

Trust: 0.1

db:VULMONid:CVE-2013-1174

Trust: 0.1

sources: VULHUB: VHN-61176 // VULMON: CVE-2013-1174 // BID: 58907 // JVNDB: JVNDB-2013-002153 // CNNVD: CNNVD-201304-029 // NVD: CVE-2013-1174

REFERENCES

url:http://tools.cisco.com/security/center/content/ciscosecuritynotice/cve-2013-1174

Trust: 2.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2013-1174

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2013-1174

Trust: 0.8

url:http://secunia.com/advisories/52880

Trust: 0.6

url:http://www.cisco.com/en/us/products/ps12491/index.html

Trust: 0.3

url:https://cwe.mitre.org/data/definitions/119.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.securityfocus.com/bid/58907

Trust: 0.1

url:http://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20130406-cve-2013-1174

Trust: 0.1

sources: VULHUB: VHN-61176 // VULMON: CVE-2013-1174 // BID: 58907 // JVNDB: JVNDB-2013-002153 // CNNVD: CNNVD-201304-029 // NVD: CVE-2013-1174

CREDITS

Cisco

Trust: 0.3

sources: BID: 58907

SOURCES

db:VULHUBid:VHN-61176
db:VULMONid:CVE-2013-1174
db:BIDid:58907
db:JVNDBid:JVNDB-2013-002153
db:CNNVDid:CNNVD-201304-029
db:NVDid:CVE-2013-1174

LAST UPDATE DATE

2024-11-23T23:05:54.028000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-61176date:2013-04-05T00:00:00
db:VULMONid:CVE-2013-1174date:2013-04-05T00:00:00
db:BIDid:58907date:2013-04-04T00:00:00
db:JVNDBid:JVNDB-2013-002153date:2013-04-08T00:00:00
db:CNNVDid:CNNVD-201304-029date:2013-04-11T00:00:00
db:NVDid:CVE-2013-1174date:2024-11-21T01:49:02.930

SOURCES RELEASE DATE

db:VULHUBid:VHN-61176date:2013-04-05T00:00:00
db:VULMONid:CVE-2013-1174date:2013-04-05T00:00:00
db:BIDid:58907date:2013-04-04T00:00:00
db:JVNDBid:JVNDB-2013-002153date:2013-04-08T00:00:00
db:CNNVDid:CNNVD-201304-029date:2013-04-11T00:00:00
db:NVDid:CVE-2013-1174date:2013-04-05T16:55:01.747