CVE-2008-5872
Title: Nortel Multimedia Communication Server 5100 Denial of Service (DoS)
Denial of Service (DoS)
Proof Of Concept
No public PoC currently indexed for CVE-2008-5872.
CWE Category
CWE-20
Published Date
Jan 08, 2009
Modified Date
Apr 09, 2025
Exploit Status
Not Found
Score
7.8
CVSS v2.0
Exploit Probability (EPSS)
1.92%
Vulnerability Summary
CVE-2008-5872: Multiple unspecified vulnerabilities in the UNIStim File Transfer Protocol (UFTP) processing in IP Client Manager (IPCM) in Nortel Multimedia Communication Server (MSC) 5100 3.0.13 allow remote attackers to cause a denial of service (device outage) via a UFTP message that has a negative block size or other crafted Connection Details values.
Impacted Vendors
Reference Links
http://secunia.com/advisories/32203
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=774845
http://voipshield.com/research-details.php?id=120
http://www.securityfocus.com/bid/31633
http://www.vupen.com/english/advisories/2008/2779
https://exchange.xforce.ibmcloud.com/vulnerabilities/45751
http://secunia.com/advisories/32203
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=774845
http://voipshield.com/research-details.php?id=120
http://www.securityfocus.com/bid/31633
http://www.vupen.com/english/advisories/2008/2779
https://exchange.xforce.ibmcloud.com/vulnerabilities/45751
CVSS v2.0
Source Entity
[email protected]
Severity
HIGH
7.8
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:N/AC:L/Au:N/C:N/I:N/A:C
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2008-5872 Exploits & PoCs (Proof Of Concept)
No public PoCs found in our database for this CVE.
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:N/AC:L/Au:N/C:N/I:N/A:C
Affected Stack
No specific products linked.