ID

VAR-201509-0011


CVE

CVE-2015-6286


TITLE

Cisco Application Visibility and Control Service disruption in (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2015-004676

DESCRIPTION

Cisco Application Visibility and Control (AVC) 15.3(3)JA, when FlexConnect is enabled, allows remote attackers to cause a denial of service (access-point outage) via a crafted UDP packet, aka Bug ID CSCuu47016. Attackers can exploit this issue to cause a denial-of-service condition, denying service to legitimate users. This issue is being tracked by Cisco Bug ID CSCuu47016. The solution supports identifying and classifying multiple applications, exporting performance indicators of applications, and setting different services according to the priority of applications (QoS), etc. A security vulnerability exists in Cisco AVC 15.3(3)JA release

Trust: 1.98

sources: NVD: CVE-2015-6286 // JVNDB: JVNDB-2015-004676 // BID: 76668 // VULHUB: VHN-84247

AFFECTED PRODUCTS

vendor:ciscomodel:application visibility and controlscope:eqversion:15.3\(3\)ja

Trust: 1.6

vendor:ciscomodel:application visibility and controlscope:eqversion:15.3(3)ja

Trust: 0.8

vendor:ciscomodel:application visibility and control 15.3 jascope: - version: -

Trust: 0.3

sources: BID: 76668 // JVNDB: JVNDB-2015-004676 // CNNVD: CNNVD-201509-165 // NVD: CVE-2015-6286

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2015-6286
value: MEDIUM

Trust: 1.0

NVD: CVE-2015-6286
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201509-165
value: MEDIUM

Trust: 0.6

VULHUB: VHN-84247
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2015-6286
severity: MEDIUM
baseScore: 5.7
vectorString: AV:A/AC:M/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 5.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-84247
severity: MEDIUM
baseScore: 5.7
vectorString: AV:A/AC:M/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 5.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-84247 // JVNDB: JVNDB-2015-004676 // CNNVD: CNNVD-201509-165 // NVD: CVE-2015-6286

PROBLEMTYPE DATA

problemtype:CWE-399

Trust: 1.9

sources: VULHUB: VHN-84247 // JVNDB: JVNDB-2015-004676 // NVD: CVE-2015-6286

THREAT TYPE

specific network environment

Trust: 0.6

sources: CNNVD: CNNVD-201509-165

TYPE

resource management error

Trust: 0.6

sources: CNNVD: CNNVD-201509-165

CONFIGURATIONS

sources: JVNDB: JVNDB-2015-004676

PATCH

title:40845url:http://tools.cisco.com/security/center/viewAlert.x?alertId=40845

Trust: 0.8

sources: JVNDB: JVNDB-2015-004676

EXTERNAL IDS

db:NVDid:CVE-2015-6286

Trust: 2.8

db:JVNDBid:JVNDB-2015-004676

Trust: 0.8

db:CNNVDid:CNNVD-201509-165

Trust: 0.7

db:BIDid:76668

Trust: 0.4

db:VULHUBid:VHN-84247

Trust: 0.1

sources: VULHUB: VHN-84247 // BID: 76668 // JVNDB: JVNDB-2015-004676 // CNNVD: CNNVD-201509-165 // NVD: CVE-2015-6286

REFERENCES

url:http://tools.cisco.com/security/center/viewalert.x?alertid=40845

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2015-6286

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2015-6286

Trust: 0.8

url:http://www.cisco.com/

Trust: 0.3

url:http://tools.cisco.com/security/center/viewalert.x?alertid=40845

Trust: 0.3

sources: VULHUB: VHN-84247 // BID: 76668 // JVNDB: JVNDB-2015-004676 // CNNVD: CNNVD-201509-165 // NVD: CVE-2015-6286

CREDITS

Cisco

Trust: 0.3

sources: BID: 76668

SOURCES

db:VULHUBid:VHN-84247
db:BIDid:76668
db:JVNDBid:JVNDB-2015-004676
db:CNNVDid:CNNVD-201509-165
db:NVDid:CVE-2015-6286

LAST UPDATE DATE

2025-04-12T23:22:13.885000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-84247date:2015-09-14T00:00:00
db:BIDid:76668date:2015-09-08T00:00:00
db:JVNDBid:JVNDB-2015-004676date:2015-09-15T00:00:00
db:CNNVDid:CNNVD-201509-165date:2015-09-18T00:00:00
db:NVDid:CVE-2015-6286date:2025-04-12T10:46:40.837

SOURCES RELEASE DATE

db:VULHUBid:VHN-84247date:2015-09-14T00:00:00
db:BIDid:76668date:2015-09-08T00:00:00
db:JVNDBid:JVNDB-2015-004676date:2015-09-15T00:00:00
db:CNNVDid:CNNVD-201509-165date:2015-09-14T00:00:00
db:NVDid:CVE-2015-6286date:2015-09-14T01:59:04.230