CVE-2011-4006Improper Input Validation in Cisco Adaptive Security Appliance Software

Severity
7.8HIGHNVD
EPSS
0.4%
top 37.61%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 2
Latest updateMay 17

Description

The ESMTP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.5 allows remote attackers to cause a denial of service (CPU consumption) via an unspecified closing sequence, aka Bug ID CSCtt32565.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-7fpv-cq23-29qf: The ESMTP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 82022-05-17
CVEList
CVE-2011-4006: The ESMTP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 82012-05-02
CVE-2011-4006 — Improper Input Validation in Cisco | cvebase