VulnerabilityModified
CVE-2008-3157
Nortel SIP Multimedia PC Client 4.x MCS5100 and MCS5200 does not limit the number of concurrent sessions, which allows attackers to cause a denial of service (resource consumption) via a large number of sessions.
MEDIUM 5.0EPSS 1.42%
Does this matter?
Lower severity and a low EPSS score (1.42%). Track it; it rarely justifies an emergency change on its own.
Description
Nortel SIP Multimedia PC Client 4.x MCS5100 and MCS5200 does not limit the number of concurrent sessions, which allows attackers to cause a denial of service (resource consumption) via a large number of sessions.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 1.42% probability · 71th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- nortel/sip multimedia pc client
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/30854Vendor Advisory
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=738961
- http://www.securitytracker.com/id?1020371
- http://www.voipshield.com/research-details.php?id=61
- http://www.vupen.com/english/advisories/2008/1942/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43364
- http://secunia.com/advisories/30854Vendor Advisory
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=738961
- http://www.securitytracker.com/id?1020371
- http://www.voipshield.com/research-details.php?id=61
- http://www.vupen.com/english/advisories/2008/1942/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/43364
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.