CVE-2019-15956: Cisco Web Security Appliance Unauthorized Device Reset Vulnerability
A vulnerability in the web management interface of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to perform an unauthorized system reset on an affected device. The vulnerability is due to improper authorization controls for a specific URL in the web management interface. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could have a twofold impact: the attacker could either change the administrator password, gaining privileged access, or reset the network configuration details, causing a denial of service (DoS) condition. In both scenarios, manual intervention is required to restore normal operations.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-15956?
CVE-2019-15956 is a vulnerability in the web management interface of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) that allows an authenticated, remote attacker to perform an unauthorized system reset on an affected device.
How severe is CVE-2019-15956?
CVE-2019-15956 has a severity level of 8.8 (high).
How does CVE-2019-15956 affect Cisco AsyncOS Software?
CVE-2019-15956 affects Cisco AsyncOS Software versions 10.1 to 10.1.5-004, 10.5 to 11.5.3-016, and 11.7 to 11.7.1-006.
How does CVE-2019-15956 affect Cisco Web Security Appliance?
CVE-2019-15956 affects Cisco Web Security Appliance versions 10.5.2-072, 11.5.1-fcs-125, and 11.7.0-fcs-418.
How can I fix CVE-2019-15956?
To fix CVE-2019-15956, apply the necessary updates or patches provided by Cisco. For more information, refer to the Cisco Security Advisory linked in the references section.