PT-2016-4828 · Cisco · Cisco Email Security Appliances+1
Publicado
2016-10-28
·
Atualizado
2017-07-29
·
CVE-2016-1481
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco AsyncOS Software for Cisco Email Security Appliances versions prior to 9.1.1-038
Cisco AsyncOS Software for Cisco Email Security Appliances versions prior to 9.7.1-066
Description
A denial of service (DoS) condition can be caused by an unauthenticated, remote attacker on an affected device due to a vulnerability in the email message filtering feature of Cisco AsyncOS Software for Cisco Email Security Appliances. This issue arises when the software is configured to apply a message filter containing certain rules.
Recommendations
For versions prior to 9.1.1-038, update to version 9.1.1-038 or later.
For versions prior to 9.7.1-066, update to version 9.7.1-066 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Asyncos
Cisco Email Security Appliances