Description

A vulnerability in the local interface of Cisco BroadWorks Network Server could allow an unauthenticated, remote attacker to exhaust system resources, causing a denial of service (DoS) condition. This vulnerability exists because rate limiting does not occur for certain incoming TCP connections. An attacker could exploit this vulnerability by sending a high rate of TCP connections to the server. A successful exploit could allow the attacker to cause TCP connection resources to grow rapidly until the Cisco BroadWorks Network Server becomes unusable. Note: To recover from this vulnerability, either Cisco BroadWorks Network Server software must be restarted or the Cisco BroadWorks Network Server node must be rebooted. For more information, see the section of this advisory. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

INFO

Published Date :

2024-11-15T14:58:04.361Z

Last Modified :

2024-11-26T14:38:19.370Z

Source :

cisco
AFFECTED PRODUCTS

The following products are affected by CVE-2023-20125 vulnerability.

Vendors Products
Cisco
  • Broadworks Network Server
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2023-20125.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact