Vulnerabilities > Cisco > IPS Sensor Software > 7.2.1.e4

DATE CVE VULNERABILITY TITLE RISK
2015-02-21 CVE-2015-0631 Race Condition vulnerability in Cisco IPS Sensor Software 7.2(1)E4/7.2(2)E4
Race condition in the SSL implementation on Cisco Intrusion Prevention System (IPS) devices allows remote attackers to cause a denial of service by making many management-interface HTTPS connections during the key-regeneration phase of an upgrade, aka Bug ID CSCui25688.
network
cisco CWE-362
7.1
2014-02-22 CVE-2014-0720 Improper Input Validation vulnerability in Cisco IPS Sensor Software
Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (Analysis Engine process outage) via a flood of jumbo frames, aka Bug ID CSCuh94944.
network
cisco CWE-20
7.1
2014-02-22 CVE-2014-0719 Permissions, Privileges, and Access Controls vulnerability in Cisco IPS Sensor Software
The control-plane access-list implementation in Cisco IPS Software before 7.1(8p2)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (MainApp process outage) via crafted packets to TCP port 7000, aka Bug ID CSCui67394.
network
low complexity
cisco CWE-264
7.8
2014-02-22 CVE-2014-0718 Improper Input Validation vulnerability in Cisco IPS Sensor Software
The produce-verbose-alert feature in Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (Analysis Engine process outage) via fragmented packets, aka Bug ID CSCui91266.
network
cisco CWE-20
7.1