CVE-2014-3381
published 2014-10-19CVE-2014-3381: The ZIP inspection engine in Cisco AsyncOS 8.5 and earlier on the Cisco Email Security Appliance (ESA) does not properly analyze ZIP archives, which allows…
PriorityP428medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.72%
74.9th percentile
The ZIP inspection engine in Cisco AsyncOS 8.5 and earlier on the Cisco Email Security Appliance (ESA) does not properly analyze ZIP archives, which allows remote attackers to bypass malware filtering via a crafted archive, aka Bug ID CSCup07934.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | asyncos | <= 8.5 | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco AsyncOS Software ZIP Filtering Bypass Vulnerability
vendor_cisco·2014-10-14·CVSS 5.0
CVE-2014-3381 [MEDIUM] CWE-264 Cisco AsyncOS Software ZIP Filtering Bypass Vulnerability
Cisco AsyncOS Software ZIP Filtering Bypass Vulnerability
A vulnerability in the ZIP inspection engine of Cisco AsyncOS for Cisco Email Security
Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the engine protection and deliver malicious ZIP files.
The
vulnerability is due to improper implementation of the logic for analyzing
the content of a ZIP file. An attacker could exploit this vulnerability by crafting the ZIP file before sending it through the system.
Cisco has confirmed the vulnerability in a security notice and released software updates.
An exploit of this vulnerability could allow an attacker to bypass security restrictions on a targeted system, which could be used to send malicious ZIP files to be processed by the system. Processing the malicious ZI
GHSA
GHSA-w4h4-v874-qrqc: The ZIP inspection engine in Cisco AsyncOS 8
ghsa_unreviewed·2022-05-17
CVE-2014-3381 [MEDIUM] GHSA-w4h4-v874-qrqc: The ZIP inspection engine in Cisco AsyncOS 8
The ZIP inspection engine in Cisco AsyncOS 8.5 and earlier on the Cisco Email Security Appliance (ESA) does not properly analyze ZIP archives, which allows remote attackers to bypass malware filtering via a crafted archive, aka Bug ID CSCup07934.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2014-10-19
Published