PT-2012-3195 · Cisco · Cisco Ios
Publicado
2012-08-06
·
Atualizado
2013-04-02
·
CVE-2012-1338
CVSS v2.0
6.3
Média
| Vetor | AV:N/AC:M/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco IOS versions 15.0 and 15.1 on Catalyst 3560 and 3750 series switches
Description
The issue allows remote authenticated users to cause a denial of service, resulting in a device reload, by completing local web authentication quickly.
Recommendations
For Cisco IOS versions 15.0 and 15.1, consider implementing rate limiting or slowing down the local web authentication process to prevent quick completion and subsequent denial of service.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Race Condition
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Ios