Denial of Service Vulnerability in Cisco Wide Area Application Services
CVE-2017-12250
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 21 September 2017
What is CVE-2017-12250?
A vulnerability exists in the HTTP web interface of Cisco's Wide Area Application Services, which can be exploited by remote attackers without authentication. By sending a specially crafted HTTP request, an attacker can trigger a restart of an HTTP Application Optimization process. This exploit can lead to a temporary denial of service, as the WAAS may drop traffic while the process is restarting. Effective input validation measures are lacking, making the device susceptible to such attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Wide Area Application Services Cisco Wide Area Application Services
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved