CVE-2007-0966
published 2007-02-16CVE-2007-0966: Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.11), when the HTTPS server is enabled, allows remote attackers to cause a denial of service (device…
PriorityP430high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
1.92%
77.5th percentile
Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.11), when the HTTPS server is enabled, allows remote attackers to cause a denial of service (device reboot) via certain HTTPS traffic.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firewall_services_module | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Firewall Services Module HTTPS Traffic Temporary Denial of Service Vulnerability
vendor_cisco·2007-02-14·CVSS 7.8
CVE-2007-0966 [HIGH] CWE-399 Cisco Firewall Services Module HTTPS Traffic Temporary Denial of Service Vulnerability
Cisco Firewall Services Module HTTPS Traffic Temporary Denial of Service Vulnerability
Cisco Firewall Services Module versions versions prior to 3.1(3.11) contain a vulnerability that could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition.
The vulnerability is due to an error when the embedded HTTPS server handles certain types of requests. An unauthenticated, remote attacker could exploit this vulnerability by submitting crafted HTTPS request directly to the Cisco Firewall Services Module. This action could cause the device to reload, resulting in a temporary DoS condition.
Cisco has confirmed this vulnerability with a security advisory and released updated software.
A successful attack allows the attacker to cause the Cisco Firewall Services Modu
GHSA
GHSA-chmm-4578-mc2v: Cisco Firewall Services Module (FWSM) 3
ghsa_unreviewed·2022-05-01
CVE-2007-0966 [HIGH] GHSA-chmm-4578-mc2v: Cisco Firewall Services Module (FWSM) 3
Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.11), when the HTTPS server is enabled, allows remote attackers to cause a denial of service (device reboot) via certain HTTPS traffic.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/24172http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtmlhttp://www.securityfocus.com/bid/22561http://www.vupen.com/english/advisories/2007/0609https://exchange.xforce.ibmcloud.com/vulnerabilities/32497https://exchange.xforce.ibmcloud.com/vulnerabilities/32513http://secunia.com/advisories/24172http://www.cisco.com/en/US/products/products_security_advisory09186a00807e2481.shtmlhttp://www.securityfocus.com/bid/22561http://www.vupen.com/english/advisories/2007/0609https://exchange.xforce.ibmcloud.com/vulnerabilities/32497https://exchange.xforce.ibmcloud.com/vulnerabilities/32513
2007-02-16
Published