Lucene search

K
cveCiscoCVE-2015-6309
HistoryOct 02, 2015 - 3:59 p.m.

CVE-2015-6309

2015-10-0215:59:03
CWE-399
cisco
web.nvd.nist.gov
30
cisco
esa
cve-2015-6309
denial of service
http
vulnerability

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

43.8%

Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumption and device reload) via crafted HTTP requests, aka Bug ID CSCuw32211.

Affected configurations

Nvd
Node
ciscoemail_security_applianceMatch9.6.0-042
OR
ciscoemail_security_appliance_firmwareMatch8.5.6-106
VendorProductVersionCPE
ciscoemail_security_appliance9.6.0-042cpe:2.3:h:cisco:email_security_appliance:9.6.0-042:*:*:*:*:*:*:*
ciscoemail_security_appliance_firmware8.5.6-106cpe:2.3:o:cisco:email_security_appliance_firmware:8.5.6-106:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

43.8%

Related for CVE-2015-6309