cisco-sa-20181003-ind-dos: Cisco Industrial Network Director DHCP Request Processing Denial of Service Vulnerability
A vulnerability in the DHCP service of Cisco Industrial Network Director could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition. The vulnerability is due to improper handling of DHCP lease requests. An attacker could exploit this vulnerability by sending malicious DHCP lease requests to an affected application. A successful exploit could allow the attacker to cause the DHCP service to terminate, resulting in a DoS condition.
There are no workarounds that address this vulnerability.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181003-ind-dos
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-20181003-ind-dos?
The severity of cisco-sa-20181003-ind-dos is classified as high due to the potential for denial of service.
How do I fix cisco-sa-20181003-ind-dos?
To fix cisco-sa-20181003-ind-dos, ensure that you are running the latest version of Cisco Industrial Network Director that addresses this vulnerability.
Who is affected by cisco-sa-20181003-ind-dos?
Any organization using Cisco Industrial Network Director is affected by cisco-sa-20181003-ind-dos if they have not applied the relevant updates.
What type of attack can exploit cisco-sa-20181003-ind-dos?
An unauthenticated, adjacent attacker can exploit cisco-sa-20181003-ind-dos to induce a denial of service condition.
What component of Cisco products does cisco-sa-20181003-ind-dos involve?
cisco-sa-20181003-ind-dos involves a vulnerability in the DHCP service component of Cisco Industrial Network Director.