CVE-2015-6287: Medium severity cisco secure web appliance vulnerability
Published Sep 14, 2015
·Updated
Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows remote attackers to cause a denial of service (service outage) via a flood of TCP traffic that leads to DNS resolution delays, aka Bug IDs CSCur32005 and CSCur07907.
Affected Software
3 affected components
Cisco Web Security Virtual Appliance=8.0.5
Cisco Web Security Virtual Appliance=8.0.6
Cisco Web Security Virtual Appliance=8.0_base
Event History
Sep 14, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6287?
CVE-2015-6287 is rated as a medium severity vulnerability that can lead to denial of service.
2
How do I fix CVE-2015-6287?
To fix CVE-2015-6287, upgrade your Cisco Web Security Appliance to the latest software version that addresses the vulnerability.
3
Which versions of Cisco Web Security Appliance are affected by CVE-2015-6287?
CVE-2015-6287 affects Cisco Web Security Appliance versions 8.0.5, 8.0.6-078, and 8.0.6-115.
4
What kind of attack does CVE-2015-6287 allow?
CVE-2015-6287 allows remote attackers to execute a denial of service attack via a flood of TCP traffic.
5
What is the impact of CVE-2015-6287 on affected systems?
The impact of CVE-2015-6287 is a service outage resulting from DNS resolution delays.