5.9
CVE-2019-1705
- EPSS 0.53%
- Veröffentlicht 03.05.2019 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:37:08
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow a unauthenticated, remote attacker to cause a denial of service (DoS) condition on the remote access VPN services. The vulnerability is due to an issue with the remote access VPN session manager. An attacker could exploit this vulnerability by requesting an excessive number of remote access VPN sessions. An exploit could allow the attacker to cause a DoS condition.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Adaptive Security Appliance Software Version >= 9.4 < 9.4.4.34
Cisco ≫ Asa 5506-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Adaptive Security Appliance Software Version >= 9.5 < 9.6.4.25
Cisco ≫ Asa 5506-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Adaptive Security Appliance Software Version >= 9.7 < 9.8.4
Cisco ≫ Asa 5506-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Adaptive Security Appliance Software Version >= 9.9 < 9.9.2.50
Cisco ≫ Asa 5506-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Adaptive Security Appliance Software Version >= 9.10 < 9.10.1.17
Cisco ≫ Asa 5506-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Cisco ≫ Asa 5506h-x Version-
Cisco ≫ Asa 5506w-x Version-
Cisco ≫ Asa 5508-x Version-
Cisco ≫ Asa 5516-x Version-
Cisco ≫ Asa 5525-x Version-
Cisco ≫ Asa 5545-x Version-
Cisco ≫ Asa 5555-x Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.53% | 0.643 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 5.9 | 2.2 | 3.6 |
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
|
nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:N/A:P
|
psirt@cisco.com | 5.3 | 3.9 | 1.4 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
|
CWE-404 Improper Resource Shutdown or Release
The product does not release or incorrectly releases a resource before it is made available for re-use.