CVE-2015-6399
Cisco IMC Supervisor 1.0.0.0-1.0.0.1 Authenticated DoS via HTTP Parameters
Title source: llmDescription
The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) before 2.0(9) allows remote authenticated users to cause a denial of service (IP interface outage) via crafted parameters in an HTTP request, aka Bug ID CSCuv38286.
References (4)
Core 4
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151211-imc
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/79031
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1038475
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/108851
Scores
EPSS
0.0219
EPSS Percentile
80.6%
Details
CWE
CWE-399
Status
published
Products (2)
cisco/integrated_management_controller_supervisor
1.0.0.0
cisco/integrated_management_controller_supervisor
1.0.0.1
Published
Dec 15, 2015
Tracked Since
Feb 18, 2026