Filtering Bypass Vulnerability in Cisco Cloud Web Security
CVE-2015-0689

7.5HIGH

Key Information:

Vendor

Cisco

Vendor
CVE Published:
19 September 2017

What is CVE-2015-0689?

A flaw in Cisco Cloud Web Security versions before 3.0.1.7 allows remote attackers to bypass filtering protection mechanisms. The issue arises from improper handling of various HTTP methods, which can be exploited to circumvent intended security controls. As a result, unauthorized access to restricted content may occur, posing a significant security risk for organizations relying on this web security solution.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2015-0689 : Filtering Bypass Vulnerability in Cisco Cloud Web Security