Описание
The SIP module in Ingate Firewall before 4.6.1 and SIParator before 4.6.1 does not reuse SIP media ports in unspecified call hold and send-only stream scenarios, which allows remote attackers to cause a denial of service (port exhaustion) via unspecified vectors.
Ссылки
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.6 (включая)Версия до 4.6 (включая)
Одно из
cpe:2.3:a:ingate:firewall:*:*:*:*:*:*:*:*
cpe:2.3:a:ingate:ingate_siparator:*:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.0119
Низкий
5 Medium
CVSS2
Дефекты
CWE-399
Связанные уязвимости
github
почти 4 года назад
The SIP module in Ingate Firewall before 4.6.1 and SIParator before 4.6.1 does not reuse SIP media ports in unspecified call hold and send-only stream scenarios, which allows remote attackers to cause a denial of service (port exhaustion) via unspecified vectors.
EPSS
Процентиль: 78%
0.0119
Низкий
5 Medium
CVSS2
Дефекты
CWE-399