5
CVSSv2

CVE-2016-1299

Published: 27/01/2016 Updated: 18/02/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The web-management GUI implementation on Cisco Small Business SG300 devices 1.4.1.x allows remote malicious users to cause a denial of service (HTTPS outage) via crafted HTTPS requests, aka Bug ID CSCuw87174.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco 300_series_managed_switch_firmware 1.4.1

Vendor Advisories

A vulnerability in the GUI function in the web framework code of Cisco Small Business SG300 Managed Switches could allow an unauthenticated, remote attacker to cause the HTTPS process to become unresponsive, resulting in a partial denial of service (DoS) condition The vulnerability is due to improper handling, processing, and termination of HTTP ...