Back

HIGH

Cisco Web Security Appliance Web Proxy Denial of Service Vulnerability

Published Jul 4, 2019

Description

A vulnerability in the web proxy functionality of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient input validation mechanisms for certain fields in HTTP/HTTPS requests sent through an affected device. A successful attacker could exploit this vulnerability by sending a malicious HTTP/HTTPS request through an affected device. An exploit could allow the attacker to force the device to stop processing traffic, resulting in a DoS condition.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner cisco
Published Jul 4, 2019
Updated Nov 21, 2024
Reserved Dec 6, 2018

CISA Vulnrichment

Updated Nov 21, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner cisco
Published Jul 4, 2019
Updated Nov 21, 2024

GitHub

No data