6.8
CVSSv2

CVE-2015-6399

Published: 15/12/2015 Updated: 08/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) prior to 2.0(9) allows remote authenticated users to cause a denial of service (IP interface outage) via crafted parameters in an HTTP request, aka Bug ID CSCuv38286.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco integrated management controller supervisor 1.0.0.0

cisco integrated management controller supervisor 1.0.0.1

Vendor Advisories

A vulnerability in Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to make the IMC IP interface inaccessible The vulnerability is due to incomplete sanitization of input for certain parameters An attacker could exploit this vulnerability by sending a crafted HTTP request to the IMC A successful exploit ...