CVE-2015-0654: Cisco Intrusion Prevention System

High severity, CVSS 7.1. EPSS: 1.3% chance of exploitation in the next 30 days.

Race condition in the TLS implementation in MainApp in the management interface in Cisco Intrusion Prevention System (IPS) Software before 7.3(3)E4 allows remote attackers to cause a denial of service (process hang) by establishing many HTTPS sessions, aka Bug ID CSCuq40652.

Affected products

  • Cisco Intrusion Prevention System: version 7.2(1)e4 only; version 7.2(2)e4 only; version 7.3(2)e4 only

Published 2015-03-13. Last modified 2026-06-17.