Lucene search

K
cveCiscoCVE-2015-4238
HistoryJul 02, 2015 - 2:59 p.m.

CVE-2015-4238

2015-07-0214:59:02
CWE-399
cisco
web.nvd.nist.gov
42
cisco
asa
software
snmp
implementation
vulnerability
cve-2015-4238
nvd
bug id cscul02601

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

43.8%

The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 8.4(7) and 8.6(1.2) allows remote authenticated users to cause a denial of service (device reload) by sending many SNMP requests during a time of high network traffic, aka Bug ID CSCul02601.

Affected configurations

Nvd
Node
ciscoadaptive_security_appliance_softwareMatch8.4\(7\)
OR
ciscoadaptive_security_appliance_softwareMatch8.6\(1.2\)
VendorProductVersionCPE
ciscoadaptive_security_appliance_software8.4(7)cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(7\):*:*:*:*:*:*:*
ciscoadaptive_security_appliance_software8.6(1.2)cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6\(1.2\):*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

43.8%

Related for CVE-2015-4238