Description
The Internet Streamer application in Cisco Content Delivery System (CDS) with software 2.5.7, 2.5.8, and 2.5.9 before build 126 allows remote attackers to cause a denial of service (Web Engine crash) via a crafted URL, aka Bug IDs CSCtg67333 and CSCth25341.
References (2)
Core 2
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b7f18b.shtml
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1025564
Scores
EPSS
0.0121
EPSS Percentile
65.3%
Details
CWE
CWE-399
Status
published
Products (4)
cisco/content_delivery_system
2.5.7
cisco/content_delivery_system
2.5.8
cisco/content_delivery_system
2.5.9
cisco/content_delivery_system_engine
Published
May 31, 2011
Tracked Since
Feb 18, 2026