7.8
CVSSv2

CVE-2010-2823

Published: 17/08/2010 Updated: 26/07/2011
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Unspecified vulnerability in the deep packet inspection feature on the Cisco Application Control Engine (ACE) 4710 appliance with software before A3(2.6) allows remote malicious users to cause a denial of service (device reload) via crafted HTTP packets, related to HTTP, RTSP, and SIP inspection, aka Bug ID CSCtb54493.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ace 4710 a3\\(1.0\\)

cisco ace 4710 a1\\(8.0\\)

cisco ace 4710 a1\\(2.0\\)

cisco ace 4710

cisco ace 4710 a3\\(2.0\\)

cisco ace 4710 a3\\(2.5\\)

Vendor Advisories

The Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine contain the following DoS vulnerabilities: Real-Time Streaming Protocol (RTSP) inspection DoS vulnerability HTTP, RTSP, and Session Initiation Protocol (SIP) inspection DoS vulnerability Secure Socket Layer (SSL) DoS vulner ...