First published: Mon Sep 14 2015(Updated: )
Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows remote attackers to cause a denial of service (service outage) via a flood of TCP traffic that leads to DNS resolution delays, aka Bug IDs CSCur32005 and CSCur07907.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Web Security Virtual Appliance | =8.0.5 | |
Cisco Web Security Virtual Appliance | =8.0.6 | |
Cisco Web Security Virtual Appliance | =8.0_base |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6287 is rated as a medium severity vulnerability that can lead to denial of service.
To fix CVE-2015-6287, upgrade your Cisco Web Security Appliance to the latest software version that addresses the vulnerability.
CVE-2015-6287 affects Cisco Web Security Appliance versions 8.0.5, 8.0.6-078, and 8.0.6-115.
CVE-2015-6287 allows remote attackers to execute a denial of service attack via a flood of TCP traffic.
The impact of CVE-2015-6287 is a service outage resulting from DNS resolution delays.