7.8
CVE-2011-3297
- EPSS 1.39%
- Veröffentlicht 06.10.2011 10:55:05
- Zuletzt bearbeitet 16.06.2026 23:33:02
- Erkennungen
Cisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7), when certain authentication configurations are used, allows remote attackers to cause a denial of service (module crash) by making many authentication requests for network access, aka Bug ID CSCtn15697.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Firewall Services Module Software Version 3.1
Cisco ≫ Firewall Services Module Software Version 3.2
Cisco ≫ Firewall Services Module Software Version 4.0
Cisco ≫ Firewall Services Module Software Version 4.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.39% | 0.687 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
http://www.cisco.com/warp/public/707/cisco-sa-20111005-fwsm.shtml
https://exchange.xforce.ibmcloud.com/vulnerabilities/70327