CVE-2015-6292: High severity cisco web security appliance vulnerability
The proxy-cache implementation in Cisco AsyncOS 8.0.x before 8.0.7-151, 8.1.x and 8.5.x before 8.5.2-004, 8.6.x and 8.7.x before 8.7.0-171-LD, and 8.8.x before 8.8.0-085 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via multiple proxy connections, aka Bug ID CSCus10922.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6292?
CVE-2015-6292 has a severity rating of medium due to its potential to cause a denial of service.
How do I fix CVE-2015-6292?
To fix CVE-2015-6292, upgrade your Cisco Web Security Appliance to the latest version as specified in Cisco's advisory.
What types of devices are affected by CVE-2015-6292?
CVE-2015-6292 affects various versions of Cisco Web Security Appliance running AsyncOS prior to the specified patched versions.
Can CVE-2015-6292 be exploited remotely?
Yes, CVE-2015-6292 allows remote attackers to exploit the vulnerability, potentially leading to resource exhaustion.
What is the impact of CVE-2015-6292 on Cisco Web Security Appliances?
The impact of CVE-2015-6292 is the potential for memory consumption resulting in a denial of service condition.