CVE-2006-4910: Medium severity cisco ids sensor software vulnerability
The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to cause a denial of service (unresponsive device) via a crafted SSLv2 Client Hello packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-4910?
CVE-2006-4910 is categorized with a high severity due to its potential to cause a denial of service.
How do I fix CVE-2006-4910?
To mitigate CVE-2006-4910, upgrade to Cisco IDS version 4.1(5c) or IPS version 5.0(6p1) or 5.1(2) and above.
Which Cisco products are affected by CVE-2006-4910?
CVE-2006-4910 affects Cisco IDS versions prior to 4.1(5c) and IPS versions prior to 5.0(6p1) and 5.1(2).
What type of attack does CVE-2006-4910 enable?
CVE-2006-4910 enables remote attackers to perform a denial of service attack by sending a crafted SSLv2 Client Hello packet.
Can CVE-2006-4910 be exploited remotely?
Yes, CVE-2006-4910 can be exploited remotely, leading to an unresponsive device.