6.8
CVSSv2

CVE-2013-6686

Published: 18/11/2013 Updated: 19/11/2013
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

The SSL VPN implementation in Cisco IOS 15.3(1)T2 and previous versions allows remote authenticated users to cause a denial of service (interface queue wedge) via crafted DTLS packets in an SSL session, aka Bug IDs CSCuh97409 and CSCud90568.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 15.0

cisco ios 15.1

cisco ios 15.2

cisco ios

cisco ios 15.0\\(1\\)se

Vendor Advisories

A vulnerability in the Datagram Transport Layer Security (DTLS) function of the Cisco IOS Software SSL VPN feature could allow an authenticated, remote attacker to cause the SSL VPN gateway interface to stop processing traffic when the queue is full, resulting in a denial of service (DoS) condition The vulnerability is due to improper processing ...