PT-2010-3247 · Cisco · Cisco Content Services Switch (Css) 11500+1

Publicado

2010-07-06

·

Atualizado

2018-10-10

·

CVE-2010-1576

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Cisco Content Services Switch (CSS) 11500 versions prior to 8.20.4.02 Cisco Application Control Engine (ACE) 4710 versions prior to A2(3.0)
Description The issue arises from improper handling of line feed (LF), carriage return (CR), and LFCR as alternatives to the standard CRLF sequence between HTTP headers. This allows remote attackers to bypass intended header insertions or conduct HTTP request smuggling attacks via crafted header data. For example, using LF characters before ClientCert-Subject and ClientCert-Subject-CN headers.
Recommendations For Cisco Content Services Switch (CSS) 11500 versions prior to 8.20.4.02, update to version 8.20.4.02 or later. For Cisco Application Control Engine (ACE) 4710 versions prior to A2(3.0), update to version A2(3.0) or later. As a temporary workaround, consider restricting the use of LF, CR, and LFCR characters in HTTP headers to minimize the risk of exploitation.

Exploit

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-1576

Produtos afetados

Cisco Application Control Engine (Ace) 4710
Cisco Content Services Switch (Css) 11500