The Location Bandwidth Manager (LBM) Intracluster-communication feature in Cisco Unified Communications Manager (CUCM) 9.x before 9.1(1) does not require authentication from the remote LBM Hub node, which allows remote attackers to conduct cache-poisoning attacks against transaction records, and cause a denial of service (bandwidth-pool consumption and call outage), via unspecified vectors, aka Bug ID CSCub28920.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-09-16T23:41:58.735Z
Reserved: 2013-01-11T00:00:00Z
Link: CVE-2013-1134

No data.

Status : Deferred
Published: 2013-02-27T21:55:04.167
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-1134

No data.