7.5

CVE-2016-6360

A vulnerability in Advanced Malware Protection (AMP) for Cisco Email Security Appliances (ESA) and Web Security Appliances (WSA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to the AMP process unexpectedly restarting. Affected Products: Cisco AsyncOS Software for Email Security Appliances (ESA) versions 9.5 and later up to the first fixed release, Cisco AsyncOS Software for Web Security Appliances (WSA) all versions prior to the first fixed release. More Information: CSCux56406, CSCux59928. Known Affected Releases: 9.6.0-051 9.7.0-125 8.8.0-085 9.5.0-444 WSA10.0.0-000. Known Fixed Releases: 9.7.1-066 WSA10.0.0-233.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoEmail Security Appliance Version9.5.0-000
CiscoEmail Security Appliance Version9.5.0-201
CiscoEmail Security Appliance Version9.6.0-000
CiscoEmail Security Appliance Version9.6.0-042
CiscoEmail Security Appliance Version9.6.0-051
CiscoEmail Security Appliance Version9.7.0-125
CiscoWeb Security Appliance Version8.8.0-085
CiscoWeb Security Appliance Version9.0.0-193
CiscoWeb Security Appliance Version9.0_base
CiscoWeb Security Appliance Version9.1.0-000
CiscoWeb Security Appliance Version9.1.0-070
CiscoWeb Security Appliance Version9.1_base
CiscoWeb Security Appliance Version9.5.0-235
CiscoWeb Security Appliance Version9.5.0-284
CiscoWeb Security Appliance Version9.5.0-444
CiscoWeb Security Appliance Version9.5_base
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.36% 0.783
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.