Denial of Service Vulnerability in Cisco EPC3928 Devices
CVE-2016-1328

7.5HIGH

Key Information:

Vendor
Cisco
Vendor
CVE Published:
3 July 2016

Summary

The Cisco EPC3928 devices are susceptible to a denial of service attack through the goform/WClientMACList interface. An attacker can exploit this vulnerability by sending a crafted request with an excessively long h_sortWireless parameter. This can lead to a device crash, rendering the firewall unresponsive and potentially disrupting network services. This issue has been tracked as Bug ID CSCux24948, highlighting its significance for network administrators concerned about system reliability and security.

References

EPSS Score

23% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.