Cisco Bug: CSCuq39550 - Cisco IPS MainApp Denial of Service Vulnerability
Nov 01, 2017
- Cisco IPS 4200 Series Sensors
Known Affected Releases
Symptom: A vulnerability in the web framework of the Cisco Intrusion Prevention System (IPS) Software could allow an authenticated, remote attacker to cause MainApp to hang intermittently due to the authentication manager process creating a denial of service (DoS) condition. The vulnerability is due to improper handling of user tokens. An attacker could exploit this vulnerability by sending a crafted connection request to the Cisco IPS management interface. Conditions: Default configuration.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.
Bug Details Include
- Full Description (including symptoms, conditions and workarounds)
- Known Fixed Releases
- Related Community Discussions
- Number of Related Support Cases