cisco ic3000-industrial-compute-gateway CVE-2019-12714 is a vulnerability in Cisco Ic3000 Industrial Compute Gateway
Published on October 2, 2019

Cisco IC3000 Industrial Compute Gateway Denial of Service Vulnerability
A vulnerability in the web-based management interface of Cisco IC3000 Industrial Compute Gateway could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability exists because the affected software improperly manages system resources. An attacker could exploit this vulnerability by opening a large number of simultaneous sessions on the web-based management interface of an affected device. A successful exploit could allow the attacker to cause a DoS condition of the web-based management interface, preventing normal management operations.

Vendor Advisory NVD

Weakness Type

What is a Resource Exhaustion Vulnerability?

The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

CVE-2019-12714 has been classified to as a Resource Exhaustion vulnerability or weakness.


Products Associated with CVE-2019-12714

Want to know whenever a new CVE is published for Cisco Ic3000 Industrial Compute Gateway? stack.watch will email you.

 

Affected Versions

Cisco IC3000 Industrial Compute Gateway:

Exploit Probability

EPSS
0.37%
Percentile
58.13%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.