The Location Bandwidth Manager (LBM) Intracluster-communication feature in Cisco Unified Communications Manager (CUCM) 9.x before 9.1(1) does not require authentication from the remote LBM Hub node, which allows remote attackers to conduct cache-poisoning attacks against transaction records, and cause a denial of service (bandwidth-pool consumption and call outage), via unspecified vectors, aka Bug ID CSCub28920.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2013-02-27T21:00:00Z

Updated: 2024-09-16T23:41:58.735Z

Reserved: 2013-01-11T00:00:00Z

Link: CVE-2013-1134

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-02-27T21:55:04.167

Modified: 2024-11-21T01:48:58.063

Link: CVE-2013-1134

cve-icon Redhat

No data.