vendor:
OfficeSIP Server
by:
Prabhu S Angadi
5
CVSS
MEDIUM
Denial Of Service
N/A
CWE
Product Name: OfficeSIP Server
Affected Version From: OfficeSIP Server 3.1
Affected Version To: OfficeSIP Server 3.1
Patch Exists: NO
Related CWE: N/A
CPE: a:officesip:officesip_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2 & SP3
2012
OfficeSIP Server Denial Of Service Vulnerability
The vulnerability is caused due to improper validation of SIP/SIPS URI in the 'To' header of the request, which allows remote attackers to cause denial of service condition.
Mitigation:
Not available