Cisco Unity Connection File Upload Denial of Service Vulnerability

medium Nessus Plugin ID 130018

Synopsis

The remote host is missing a vendor-supplied security patch.

Description

A vulnerability in the Bulk Administration Tool (BAT) for Cisco Unity Connection could allow an authenticated, remote attacker to cause high disk utilization, resulting in a denial of service (DoS) condition. The vulnerability exists because the affected software does not restrict the maximum size of certain files that can be written to disk. An attacker who has valid administrator credentials for an affected system could exploit this vulnerability by sending a crafted, remote connection request to an affected system. A successful exploit could allow the attacker to write a file that consumes most of the available disk space on the system, causing application functions to operate abnormally and leading to a DoS condition.

Solution

Apply the patch or upgrade to the version recommended in Cisco bug ID CSCvj79033

See Also

http://www.nessus.org/u?547f4dfa

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvj79033

Plugin Details

Severity: Medium

ID: 130018

File Name: cisco-sa-20181003-unity-dos.nasl

Version: 1.2

Type: local

Family: CISCO

Published: 10/18/2019

Updated: 10/18/2019

Configuration: Enable paranoid mode

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.4

CVSS v2

Risk Factor: Medium

Base Score: 4

Temporal Score: 3

Vector: CVSS2#AV:N/AC:L/Au:S/C:N/I:N/A:P

CVSS Score Source: CVE-2018-15396

CVSS v3

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.9

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:cisco:unity_connection

Required KB Items: Settings/ParanoidReport, installed_sw/Cisco VOSS Unity

Exploit Ease: No known exploits are available

Patch Publication Date: 10/3/2016

Vulnerability Publication Date: 10/3/2016

Reference Information

CVE: CVE-2018-15396

BID: 105824

CWE: 399

CISCO-SA: cisco-sa-20181003-unity-dos

CISCO-BUG-ID: CSCvj79033