MEDIUM · 5.0

CVE-2006-4910

The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to cause a denial of service (unresponsive device) via...

Vulnerability Description

The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to cause a denial of service (unresponsive device) via a crafted SSLv2 Client Hello packet.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
CiscoIds Sensor Software4.1\(5b\)
CiscoIps Sensor Software5.0\(6\)p1

References

FAQ

What is CVE-2006-4910?

CVE-2006-4910 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The web administration interface (mainApp) to Cisco IDS before 4.1(5c), and IPS 5.0 before 5.0(6p1) and 5.1 before 5.1(2) allows remote attackers to cause a denial of service (unresponsive device) via...

How severe is CVE-2006-4910?

CVE-2006-4910 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-4910?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ids Sensor Software, Cisco Ips Sensor Software.