CVE-2020-3353
03.06.2020, 19:15
A vulnerability in the syslog processing engine of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a race condition that may occur when syslog messages are processed. An attacker could exploit this vulnerability by sending a high rate of syslog messages to an affected device. A successful exploit could allow the attacker to cause the Application Server process to crash, resulting in a DoS condition.
Vendor | Product | Version |
---|---|---|
cisco | identity_services_engine | 2.2.0.470 |
cisco | identity_services_engine | 2.2.0.470:patch1 |
cisco | identity_services_engine | 2.2.0.470:patch10 |
cisco | identity_services_engine | 2.2.0.470:patch11 |
cisco | identity_services_engine | 2.2.0.470:patch12 |
cisco | identity_services_engine | 2.2.0.470:patch2 |
cisco | identity_services_engine | 2.2.0.470:patch3 |
cisco | identity_services_engine | 2.2.0.470:patch4 |
cisco | identity_services_engine | 2.2.0.470:patch5 |
cisco | identity_services_engine | 2.2.0.470:patch6 |
cisco | identity_services_engine | 2.2.0.470:patch7 |
cisco | identity_services_engine | 2.2.0.470:patch8 |
cisco | identity_services_engine | 2.2.0.470:patch9 |
cisco | identity_services_engine | 2.3.0.298 |
cisco | identity_services_engine | 2.3.0.298:patch1 |
cisco | identity_services_engine | 2.3.0.298:patch2 |
cisco | identity_services_engine | 2.3.0.298:patch3 |
cisco | identity_services_engine | 2.3.0.298:patch4 |
cisco | identity_services_engine | 2.3.0.298:patch5 |
cisco | identity_services_engine | 2.4.0.357 |
cisco | identity_services_engine | 2.4.0.357:patch1 |
𝑥
= Vulnerable software versions