CVE-2010-2821
published 2010-08-09CVE-2010-2821: Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3.2 before 3.2(17.2), 4.0 before 4.0(11.1), and 4.1 before 4.1(1.2) for…
PriorityP429high7.1CVSS 2.0
AVNACMAuNCNINAC
EPSS
1.07%
61.0th percentile
Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3.2 before 3.2(17.2), 4.0 before 4.0(11.1), and 4.1 before 4.1(1.2) for Catalyst 6500 series switches and 7600 series routers, when multi-mode is enabled, allows remote attackers to cause a denial of service (device reload) via crafted (1) Telnet, (2) SSH, or (3) ASDM traffic over TCP, aka Bug ID CSCtg68694.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
| cisco | firewall_services_module_software | — | — |
CVSS provenance
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wpr5-cjf5-94fx: Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3
ghsa_unreviewed·2022-05-17
CVE-2010-2821 [HIGH] GHSA-wpr5-cjf5-94fx: Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3
Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3.2 before 3.2(17.2), 4.0 before 4.0(11.1), and 4.1 before 4.1(1.2) for Catalyst 6500 series switches and 7600 series routers, when multi-mode is enabled, allows remote attackers to cause a denial of service (device reload) via crafted (1) Telnet, (2) SSH, or (3) ASDM traffic over TCP, aka Bug ID CSCtg68694.
Cisco
Multiple Vulnerabilities in Cisco Firewall Services Module
vendor_cisco·2010-08-04·CVSS 7.8
CVE-2010-2818 [HIGH] CWE-399 Multiple Vulnerabilities in Cisco Firewall Services Module
Multiple Vulnerabilities in Cisco Firewall Services Module
Multiple vulnerabilities exist in the Cisco Firewall Services Module
(FWSM) for the Cisco Catalyst 6500 Series Switches and Cisco 7600 Series
Routers that may cause the Cisco FWSM to reload after processing crafted SunRPC
or certain TCP packets. Repeated exploitation could result in a sustained DoS
condition.
Cisco has released software updates that address these vulnerabilities. Workarounds are available for the vulnerabilities disclosed in
this advisory.
Note: These vulnerabilities are independent of each other. A device may be
affected by one vulnerability and not affected by another.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20100804-fwsm.
Note: Th
Red Hat
Python: SMTP proxy RFC 2821 module DoS (uncaught exception) (Issue #9129)
vendor_redhat·2010-06-30·CVSS 5.0
CVE-2010-3493 [MEDIUM] Python: SMTP proxy RFC 2821 module DoS (uncaught exception) (Issue #9129)
Python: SMTP proxy RFC 2821 module DoS (uncaught exception) (Issue #9129)
Multiple race conditions in smtpd.py in the smtpd module in Python 2.6, 2.7, 3.1, and 3.2 alpha allow remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the accept function having an unexpected return value of None, an unexpected value of None for the address, or an ECONNABORTED, EAGAIN, or EWOULDBLOCK error, or the getpeername function having an ENOTCONN error, a related issue to CVE-2010-3492.
Cisco
Multiple Vulnerabilities in Cisco Firewall Services Module
vendor_cisco
CVE-2010-2821 Multiple Vulnerabilities in Cisco Firewall Services Module
CVE-2010-2821: Multiple Vulnerabilities in Cisco Firewall Services Module
Multiple vulnerabilities exist in the Cisco Firewall Services Module (FWSM) for the Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers that may cause the Cisco FWSM to reload after processing crafted SunRPC or certain TCP packets. Repeated exploitation could result in a sustained DoS condition. Cisco has released software updates that address these vulnerabilities.
CWE: CWE-399, CWE-399
Bug IDs: CSCte61710, CSCte61622, CSCte61662, CSCtg68694, CSCte61710
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie INSERT
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie INSERT
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie INSERT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie INSERT"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"INSERT"; nocase; content:"INTO"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004013; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, tag Wordpres
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie DELETE
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie DELETE
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie DELETE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie DELETE"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"DELETE"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004014; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, tag Wordpres
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie ASCII
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie ASCII
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie ASCII
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie ASCII"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"ASCII("; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004015; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, tag Wordpres
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie SELECT
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie SELECT"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"SELECT"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004011; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, tag Wordpres
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UPDATE
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UPDATE
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UPDATE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UPDATE"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"UPDATE"; nocase; content:"SET"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004016; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, tag Wordpress
Suricata
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UNION SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2007-2821 [HIGH] ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UNION SELECT
ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UNION SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS WordPress SQL Injection Attempt -- admin-ajax.php cookie UNION SELECT"; flow:established,to_server; http.uri; content:"/wp-admin/admin-ajax.php?"; nocase; content:"cookie="; nocase; content:"UNION"; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-2821; reference:url,www.securityfocus.com/bid/24076; classtype:web-application-attack; sid:2004012; rev:9; metadata:affected_product Web_Server_Applications, affected_product Wordpress, affected_product Wordpress_Plugins, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection,
No public exploits indexed.
2010-08-09
Published