First published: Tue Jan 31 2006(Updated: )
Cisco VPN 3000 series concentrators running software 4.7.0 through 4.7.2.A allow remote attackers to cause a denial of service (device reload or user disconnect) via a crafted HTTP packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco VPN 3000 concentrator series software | =4.7 | |
Cisco VPN 3000 concentrator series software | =4.7\(rel\) | |
Cisco VPN 3000 concentrator series software | =4.7.1 | |
Cisco VPN 3000 concentrator series software | =4.7.1.f | |
Cisco VPN 3000 concentrator series software | =4.7.2 | |
Cisco VPN 3000 concentrator series software | =4.7.2.a | |
Cisco VPN 3030 Concentrator | =4.7\(rel\) | |
Cisco VPN 3030 Concentrator | =4.7.1 | |
Cisco VPN 3030 Concentrator | =4.7.1.f | |
Cisco VPN 3030 Concentrator | =4.7.2 | |
Cisco VPN 3030 Concentrator | =4.7.2.a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0483 has a moderate severity rating as it allows remote attackers to cause denial of service by sending crafted HTTP packets.
To mitigate CVE-2006-0483, upgrade the Cisco VPN 3000 series concentrators to software version 4.7.3 or later.
CVE-2006-0483 affects Cisco VPN 3000 series concentrators running software versions 4.7.0 through 4.7.2.A.
CVE-2006-0483 describes a denial of service attack that can cause device reloads or user disconnections.
Currently, the recommended action for CVE-2006-0483 is to update the affected Cisco software to prevent exploitation.