The firewall subsystem in Cisco Identity Services Engine has an incorrect rule for open ports, which allows remote attackers to cause a denial of service (CPU consumption or process crash) via a flood of malformed IP packets, aka Bug ID CSCug94572.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://osvdb.org/95659 | vdb entry |
http://tools.cisco.com/security/center/viewAlert.x?alertId=30217 | vendor advisory |
http://www.securityfocus.com/bid/61452 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/85982 | vdb entry |
http://www.securitytracker.com/id/1028837 | vdb entry |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3445 | vendor advisory |