CVE-2015-4238Cisco Adaptive Security Appliance Software vulnerability

CWE-3994 documents4 sources
Severity
6.8MEDIUMNVD
EPSS
0.3%
top 42.51%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 2
Latest updateMay 13

Description

The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 8.4(7) and 8.6(1.2) allows remote authenticated users to cause a denial of service (device reload) by sending many SNMP requests during a time of high network traffic, aka Bug ID CSCul02601.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 8.0 | Impact: 6.9

Affected Packages1 packages

NVDcisco/adaptive_security_appliance_software8.4\(7\), 8.6\(1.2\)+1

🔴Vulnerability Details

2
GHSA
GHSA-ggh2-rp92-pqpm: The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 82022-05-13
CVEList
CVE-2015-4238: The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 82015-07-02

📋Vendor Advisories

1
Cisco
Cisco Adaptive Security Appliance SNMP Denial of Service Vulnerability2015-07-01
CVE-2015-4238 — Cisco vulnerability | cvebase