Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to cause a denial of service (unresponsive device) via a crafted SSLv2 Client Hello packet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco IPS/IDS Web管理接口拒绝服务漏洞
Vulnerability Description
Cisco入侵保护和检测系统是网络安全设备中的一员,可提供基于网络的威胁防范服务。 Cisco IPS/IDS设备的Web管理接口存在拒绝服务漏洞,远程攻击者可能利用此漏洞导致管理端口失效。 如果向该接口发送了畸形的SSLv2 Client Hello报文的话,就会导致负责管理远程访问的进程(mainApp)失效。这会导致IPS/IDS设备不会响应之后Web管理接口或命令行接口(CLI)上通过SSH和控制台发送的所有远程管理请求。
CVSS Information
N/A
Vulnerability Type
N/A