ID

VAR-201311-0302


CVE

CVE-2013-5562


TITLE

Cisco Prime Central for HCS of ITM Web Service disruption at the server (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2013-005043

DESCRIPTION

The ITM web server in Cisco Prime Central for Hosted Collaboration Solution (HCS) allows remote attackers to cause a denial of service (temporary HTTP service outage) via a flood of TCP packets, aka Bug ID CSCuh36313. Attackers can exploit this issue to crash the affected application, denying service to legitimate users. This issue is being tracked by Cisco Bug ID CSCuh36313. The platform provides functions such as secure access authentication and real-time fault analysis

Trust: 1.98

sources: NVD: CVE-2013-5562 // JVNDB: JVNDB-2013-005043 // BID: 63514 // VULHUB: VHN-65564

AFFECTED PRODUCTS

vendor:ciscomodel:prime central for hosted collaboration solutionscope:eqversion: -

Trust: 1.6

vendor:ciscomodel:prime central for hosted collaboration solutionscope:lteversion:9.2.1

Trust: 0.8

sources: JVNDB: JVNDB-2013-005043 // CNNVD: CNNVD-201311-076 // NVD: CVE-2013-5562

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2013-5562
value: MEDIUM

Trust: 1.0

NVD: CVE-2013-5562
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201311-076
value: MEDIUM

Trust: 0.6

VULHUB: VHN-65564
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2013-5562
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-65564
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-65564 // JVNDB: JVNDB-2013-005043 // CNNVD: CNNVD-201311-076 // NVD: CVE-2013-5562

PROBLEMTYPE DATA

problemtype:CWE-119

Trust: 1.9

sources: VULHUB: VHN-65564 // JVNDB: JVNDB-2013-005043 // NVD: CVE-2013-5562

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201311-076

TYPE

buffer overflow

Trust: 0.6

sources: CNNVD: CNNVD-201311-076

CONFIGURATIONS

sources: JVNDB: JVNDB-2013-005043

PATCH

title:Cisco Prime Central For Hosted Collaboration Solution Denial of Service Vulnerabilityurl:http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5562

Trust: 0.8

title:31647url:http://tools.cisco.com/security/center/viewAlert.x?alertId=31647

Trust: 0.8

sources: JVNDB: JVNDB-2013-005043

EXTERNAL IDS

db:NVDid:CVE-2013-5562

Trust: 2.8

db:JVNDBid:JVNDB-2013-005043

Trust: 0.8

db:CNNVDid:CNNVD-201311-076

Trust: 0.7

db:CISCOid:20131104 CISCO PRIME CENTRAL FOR HOSTED COLLABORATION SOLUTION DENIAL OF SERVICE VULNERABILITY

Trust: 0.6

db:BIDid:63514

Trust: 0.4

db:VULHUBid:VHN-65564

Trust: 0.1

sources: VULHUB: VHN-65564 // BID: 63514 // JVNDB: JVNDB-2013-005043 // CNNVD: CNNVD-201311-076 // NVD: CVE-2013-5562

REFERENCES

url:http://tools.cisco.com/security/center/content/ciscosecuritynotice/cve-2013-5562

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2013-5562

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2013-5562

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

sources: VULHUB: VHN-65564 // BID: 63514 // JVNDB: JVNDB-2013-005043 // CNNVD: CNNVD-201311-076 // NVD: CVE-2013-5562

CREDITS

Cisco

Trust: 0.3

sources: BID: 63514

SOURCES

db:VULHUBid:VHN-65564
db:BIDid:63514
db:JVNDBid:JVNDB-2013-005043
db:CNNVDid:CNNVD-201311-076
db:NVDid:CVE-2013-5562

LAST UPDATE DATE

2025-04-11T23:05:34.874000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-65564date:2013-11-07T00:00:00
db:BIDid:63514date:2013-11-04T00:00:00
db:JVNDBid:JVNDB-2013-005043date:2013-11-07T00:00:00
db:CNNVDid:CNNVD-201311-076date:2013-11-07T00:00:00
db:NVDid:CVE-2013-5562date:2025-04-11T00:51:21.963

SOURCES RELEASE DATE

db:VULHUBid:VHN-65564date:2013-11-06T00:00:00
db:BIDid:63514date:2013-11-04T00:00:00
db:JVNDBid:JVNDB-2013-005043date:2013-11-07T00:00:00
db:CNNVDid:CNNVD-201311-076date:2013-11-07T00:00:00
db:NVDid:CVE-2013-5562date:2013-11-06T15:55:06.750