The Location Bandwidth Manager (LBM) Intracluster-communication feature in Cisco Unified Communications Manager (CUCM) 9.x before 9.1(1) does not require authentication from the remote LBM Hub node, which allows remote attackers to conduct cache-poisoning attacks against transaction records, and cause a denial of service (bandwidth-pool consumption and call outage), via unspecified vectors, aka Bug ID CSCub28920.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2013-02-27T21:00:00Z
Updated: 2024-09-16T23:41:58.735Z
Reserved: 2013-01-11T00:00:00Z
Link: CVE-2013-1134
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-02-27T21:55:04.167
Modified: 2024-11-21T01:48:58.063
Link: CVE-2013-1134
Redhat
No data.