{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T11:05:20Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"Cisco-SA-20150220-CVE-2015-0631","slug":"cisco-sa-20150220-cve-2015-0631","vendor":"Cisco","title":" Cisco Intrusion Prevention System Key Regeneration HTTPS Denial of Service Vulnerability","summary":"A vulnerability in the SSL/TLS subsystem used by the web management interface of Cisco Intrusion Prevention System (IPS) software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to a potential race condition while regenerating the affected device's cryptographic certificate and keys during an upgrade to image 7.2 or later from an image prior to 7.2. An attacker could exploit this vulnerability by negotiating a number of HTTPS connections with the management interface while key regeneration is in process. A successful exploit could allow the attacker to create a DoS condition. The condition will persist until the device has been restarted. The vulnerability can be triggered only by SSL/TLS traffic directed to the TCP port and IP address of the management interface associated with the web server. The default TCP port is 443. Packets transiting an affected device through the sensing interfaces cannot be used to trigger this vulnerability. Cisco has confirmed the vulnerability in a security notice and released software updates. Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not known to be publicly available.","severity":"Medium","published_at":"2015-02-20T20:22:44Z","updated_at":"2015-02-20T20:22:44Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20150220-CVE-2015-0631","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/Cisco-SA-20150220-CVE-2015-0631/csaf/Cisco-SA-20150220-CVE-2015-0631.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":1,"public_evidence_count":1,"kev_count":0,"highest_epss":0.01162},"cves":[{"id":"CVE-2015-0631","kev":false,"epss":{"score":0.01162,"percentile":0.63701,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"}}],"public_evidence":[{"product":{"name":"Cisco Intrusion Prevention System (IPS)","slug":"cisco-intrusion-prevention-system-ips","vendor":"Cisco"},"cve":{"id":"CVE-2015-0631"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T05:35:19Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco Intrusion Prevention System (IPS)","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"epss":{"score":0.01162,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"},"published_at":"2015-02-20T20:22:44Z","updated_at":"2015-02-20T20:22:44Z","advisory_updated_at":"2015-02-20T20:22:44Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20150220-CVE-2015-0631","row_display_order":1}]}