High severity7.5NVD Advisory· Published Sep 25, 2019· Updated Jun 17, 2026
CVE-2019-12656
CVE-2019-12656
Description
A vulnerability in the IOx application environment of multiple Cisco platforms could allow an unauthenticated, remote attacker to cause the IOx web server to stop processing HTTPS requests, resulting in a denial of service (DoS) condition. The vulnerability is due to a Transport Layer Security (TLS) implementation issue. An attacker could exploit this vulnerability by sending crafted TLS packets to the IOx web server on an affected device. A successful exploit could allow the attacker to cause the IOx web server to stop processing HTTPS requests, resulting in a DoS condition.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
9- cpe:2.3:o:cisco:cgr_1000_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ic3000_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ie_4000_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:industrial_ethernet_2000_series_firmware:15.2\(6\)e:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:1.6.0.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:cisco:ios:1.6.0.0:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ios:1.8.0:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ir510_wpan_firmware:-:*:*:*:*:*:*:*
- Cisco/Cisco Industrial Routers Operating System Softwarev5Range: unspecified
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.