Denial of Service Vulnerability in Cisco Wide Area Application Services
CVE-2017-12267
5.3MEDIUM
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 5 October 2017
What is CVE-2017-12267?
A flaw in Cisco Wide Area Application Services (WAAS) and Cisco Virtual WAAS allows an unauthenticated remote attacker to exploit the ICA accelerator feature. Improper handling of unexpected protocol packets can lead to unexpected process restarts, causing a partial denial of service. Attackers can craft ICA traffic to trigger this issue, potentially disrupting service as the affected application temporarily drops ICA traffic while the process is restarting.
Affected Version(s)
Cisco Wide Area Application Services Cisco Wide Area Application Services