漏洞标题
Cisco SD-WAN vManage软件拒绝服务漏洞
漏洞描述信息
思科SD-WAN vManage软件拒绝服务漏洞
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
漏洞类别
N/A
漏洞标题
Cisco SD-WAN vManage Software Denial of Service Vulnerability
漏洞描述信息
A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to consume excessive system memory and cause a denial of service (DoS) condition on an affected system. The vulnerability is due to inefficient memory management. An attacker could exploit this vulnerability by sending a large number of crafted HTTP requests to the affected web-based management interface. A successful exploit could allow the attacker to exhaust system memory, which could cause the system to stop processing new connections and could result in a DoS condition.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
漏洞类别
未加控制的资源消耗(资源穷尽)
漏洞标题
Cisco SD-WAN vManage Software 资源管理错误漏洞
漏洞描述信息
Cisco SD-WAN vManage Software是美国思科(Cisco)公司的一款用于SD-WAN(软件定义广域网络)解决方案的管理软件。 Cisco SD-WAN vManage Software 19.2.3之前版本和20.1.12之前版本中的Web管理界面存在资源管理错误漏洞,该漏洞源于不当的内存管理。远程攻击者可借助特制HTTP请求利用该漏洞导致系统内存耗尽(拒绝服务)。
CVSS信息
N/A
漏洞类别
资源管理错误