7.8

CVE-2016-1381

Memory leak in Cisco AsyncOS 8.5 through 9.0 before 9.0.1-162 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an HTTP file-range request for cached content, aka Bug ID CSCuw97270.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoWeb Security Appliance Version8.5.0-497
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version8.5.0.000
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version8.5.1-021
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version8.5.2-024
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version8.5.2-027
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version8.5.3-055
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version9.0.0-193
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version9.0_base
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version9.1.0-000
   CiscoWeb Security Appliance Version-
CiscoWeb Security Appliance Version9.1_base
   CiscoWeb Security Appliance Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.49% 0.625
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C