CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
AI Score
Confidence
High
EPSS
Percentile
56.0%
Cisco AsyncOS 8.x before 8.0.8-113, 8.1.x and 8.5.x before 8.5.3-051, 8.6.x and 8.7.x before 8.7.0-171-LD, and 8.8.x before 8.8.0-085 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via multiple file-range requests, aka Bug ID CSCur39155.
Vendor | Product | Version | CPE |
---|---|---|---|
cisco | web_security_appliance | 8.0.0-000 | cpe:2.3:a:cisco:web_security_appliance:8.0.0-000:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.5 | cpe:2.3:a:cisco:web_security_appliance:8.0.5:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.5 | cpe:2.3:a:cisco:web_security_appliance:8.0.5:hp1:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.6 | cpe:2.3:a:cisco:web_security_appliance:8.0.6:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.6-078 | cpe:2.3:a:cisco:web_security_appliance:8.0.6-078:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.7-142 | cpe:2.3:a:cisco:web_security_appliance:8.0.7-142:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.0.8-mr-113 | cpe:2.3:a:cisco:web_security_appliance:8.0.8-mr-113:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.5.0-497 | cpe:2.3:a:cisco:web_security_appliance:8.5.0-497:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.5.0.000 | cpe:2.3:a:cisco:web_security_appliance:8.5.0.000:*:*:*:*:*:*:* |
cisco | web_security_appliance | 8.5.2-024 | cpe:2.3:a:cisco:web_security_appliance:8.5.2-024:*:*:*:*:*:*:* |