Описание
Cisco AsyncOS on Email Security Appliance (ESA) devices with software 8.5.6-073, 8.5.6-074, and 9.0.0-461, when clustering is enabled, allows remote attackers to cause a denial of service (clustering and SSH outage) via a packet flood, aka Bug IDs CSCur13704 and CSCuq05636.
Ссылки
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:h:cisco:email_security_appliance:8.5.6-074:*:*:*:*:*:*:*
cpe:2.3:o:cisco:email_security_appliance_firmware:8.5.6-073:*:*:*:*:*:*:*
cpe:2.3:o:cisco:email_security_appliance_firmware:9.0.0-461:*:*:*:*:*:*:*
EPSS
Процентиль: 69%
0.00603
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-399
Связанные уязвимости
github
больше 3 лет назад
Cisco AsyncOS on Email Security Appliance (ESA) devices with software 8.5.6-073, 8.5.6-074, and 9.0.0-461, when clustering is enabled, allows remote attackers to cause a denial of service (clustering and SSH outage) via a packet flood, aka Bug IDs CSCur13704 and CSCuq05636.
EPSS
Процентиль: 69%
0.00603
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-399