Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in SMART-SSL Accelerator functionality for Cisco Wide Area Application Services (WAAS) 6.2.1, 6.2.1a, and 6.2.3a could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition where the WAN optimization could stop functioning while the process restarts. The vulnerability is due to a Secure Sockets Layer/Transport Layer Security (SSL/TLS) alert being incorrectly handled when in a specific SSL/TLS connection state. An attacker could exploit this vulnerability by establishing a SMART-SSL connection through the targeted device. The attacker would then send a crafted stream of SSL/TLS traffic. An exploit could allow the attacker to cause a DoS condition where WAN optimization could stop processing traffic for a short period of time. Cisco Bug IDs: CSCvb71133.
CVSS Information
N/A
Vulnerability Type
资源管理错误
Vulnerability Title
Cisco Wide Area Application Services 安全漏洞
Vulnerability Description
Cisco Wide Area Application Services(WAAS)是美国思科(Cisco)公司的一套广域网链路加速软件。该软件主要用于带宽小和延时大的链路环境。 Cisco WAAS 6.2.1版本,6.2.1a版本,6.2.3a版本中的SMART-SSL Accelerator功能存在拒绝服务漏洞,该漏洞源于程序没有正确的处理Secure Sockets Layer/Transport Layer Security (SSL/TLS)警告。远程攻击者可通过创建SMART-SSL连接并发
CVSS Information
N/A
Vulnerability Type
N/A