Lucene search

K
cveCiscoCVE-2017-6721
HistoryJul 04, 2017 - 12:29 a.m.

CVE-2017-6721

2017-07-0400:29:00
CWE-20
cisco
web.nvd.nist.gov
28
cisco
waas
vulnerability
dos
remote attacker
tcp
fragmented packets
cve-2017-6721
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

53.2%

A vulnerability in the ingress processing of fragmented TCP packets by Cisco Wide Area Application Services (WAAS) could allow an unauthenticated, remote attacker to cause the WAASNET process to restart unexpectedly, causing a denial of service (DoS) condition. More Information: CSCvc57428. Known Affected Releases: 6.3(1). Known Fixed Releases: 6.3(0.143) 6.2(3c)6 6.2(3.22).

Affected configurations

Nvd
Node
ciscowide_area_application_servicesMatch6.3\(1\)
VendorProductVersionCPE
ciscowide_area_application_services6.3(1)cpe:2.3:a:cisco:wide_area_application_services:6.3\(1\):*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Cisco Wide Area Application Services",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Cisco Wide Area Application Services"
      }
    ]
  }
]

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

AI Score

5.4

Confidence

High

EPSS

0.002

Percentile

53.2%

Related for CVE-2017-6721