A vulnerability in the web server authentication of Cisco IOS XE Software could allow an authenticated, remote attacker to crash the web server on the device. The vulnerability is due to insufficient input validation during authentication. An attacker could exploit this vulnerability by entering unexpected characters during a valid authentication. A successful exploit could allow the attacker to crash the web server on the device, which must be manually recovered by disabling and re-enabling the web server.
History

Wed, 13 Nov 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2020-09-24T17:51:26.425455Z

Updated: 2024-11-13T18:01:10.296Z

Reserved: 2019-12-12T00:00:00

Link: CVE-2020-3516

cve-icon Vulnrichment

Updated: 2024-08-04T07:37:54.645Z

cve-icon NVD

Status : Analyzed

Published: 2020-09-24T18:15:21.527

Modified: 2020-10-08T13:36:56.253

Link: CVE-2020-3516

cve-icon Redhat

No data.