漏洞类别:General remote services
漏洞等级:
漏洞信息
A vulnerability in the wireless web authentication subsystem of Cisco Wireless LAN Controller (WLC) could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition.
The vulnerability exists due to improper input sanitization of a certain value that is supplied by a user prior to successfully authenticating to an affected device.
漏洞危害
An attacker could exploit this vulnerability by sending a request designed to trigger the vulnerability and cause a process crash that will trigger a restart of the device, resulting in a DoS condition.
解决方案
Customers are advised to refer to Cisco Security Advisory Cisco-SA-20150508-CVE-2015-0723 for details pertaining to remediating this vulnerability.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论