CVE-2014-7991
The Remote Mobile Access Subsystem in Cisco Unified Communications Manager (CM) 10.0(1) and earlier does not properly validate the Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof VCS core…
Does this matter?
Lower severity and a low EPSS score (0.68%). Track it; it rarely justifies an emergency change on its own.
Description
The Remote Mobile Access Subsystem in Cisco Unified Communications Manager (CM) 10.0(1) and earlier does not properly validate the Subject Alternative Name (SAN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof VCS core devices via a crafted certificate issued by a legitimate Certification Authority, aka Bug ID CSCuq86376.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 0.68% probability · 50th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-310
- Affected
- cisco/unified communications manager
- Source
- psirt@cisco.com
References
- http://secunia.com/advisories/62267
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-7991Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=36381Vendor Advisory
- http://www.securityfocus.com/bid/71013
- http://www.securitytracker.com/id/1031181
- https://exchange.xforce.ibmcloud.com/vulnerabilities/98574
- http://secunia.com/advisories/62267
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-7991Vendor Advisory
- http://tools.cisco.com/security/center/viewAlert.x?alertId=36381Vendor Advisory
- http://www.securityfocus.com/bid/71013
- http://www.securitytracker.com/id/1031181
- https://exchange.xforce.ibmcloud.com/vulnerabilities/98574
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.