Логотип exploitDog
bind:CVE-2019-1921
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-1921

Количество 3

Количество 3

nvd логотип

CVE-2019-1921

больше 6 лет назад

A vulnerability in the attachment scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured content filters on the device. The vulnerability is due to improper input validation of the email body. An attacker could exploit this vulnerability by naming a malicious attachment with a specific pattern. A successful exploit could allow the attacker to bypass configured content filters that would normally block the attachment.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-q86h-wvjc-7wh4

больше 3 лет назад

A vulnerability in the attachment scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured content filters on the device. The vulnerability is due to improper input validation of the email body. An attacker could exploit this vulnerability by naming a malicious attachment with a specific pattern. A successful exploit could allow the attacker to bypass configured content filters that would normally block the attachment.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2019-02544

больше 6 лет назад

Уязвимость систем обеспечения безопасности электронной почты Cisco Email Security Appliance (ESA), существующая из-за недостаточной проверки входных данных, позволяющая нарушителю обойти настроенные фильтры содержимого и оказать воздействие на целостность защищаемой информации

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2019-1921

A vulnerability in the attachment scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured content filters on the device. The vulnerability is due to improper input validation of the email body. An attacker could exploit this vulnerability by naming a malicious attachment with a specific pattern. A successful exploit could allow the attacker to bypass configured content filters that would normally block the attachment.

CVSS3: 5.8
0%
Низкий
больше 6 лет назад
github логотип
GHSA-q86h-wvjc-7wh4

A vulnerability in the attachment scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configured content filters on the device. The vulnerability is due to improper input validation of the email body. An attacker could exploit this vulnerability by naming a malicious attachment with a specific pattern. A successful exploit could allow the attacker to bypass configured content filters that would normally block the attachment.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-02544

Уязвимость систем обеспечения безопасности электронной почты Cisco Email Security Appliance (ESA), существующая из-за недостаточной проверки входных данных, позволяющая нарушителю обойти настроенные фильтры содержимого и оказать воздействие на целостность защищаемой информации

CVSS3: 5.8
0%
Низкий
больше 6 лет назад

Уязвимостей на страницу