CVE-2015-4278
published 2015-07-16CVE-2015-4278: Cisco Email Security Appliance (ESA) devices with software 8.5.6-106 and 9.5.0-201 allow remote attackers to cause a denial of service (per-domain e-mail…
PriorityP421medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.53%
72.0th percentile
Cisco Email Security Appliance (ESA) devices with software 8.5.6-106 and 9.5.0-201 allow remote attackers to cause a denial of service (per-domain e-mail reception outage) by placing malformed DMARC policy data in DNS TXT records for a domain, aka Bug ID CSCuv14806.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | email_security_appliance_firmware | — | — |
| cisco | email_security_appliance_firmware | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
vendor_cisco4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j467-jvch-4wxp: Cisco Email Security Appliance (ESA) devices with software 8
ghsa_unreviewed·2022-05-14
CVE-2015-4278 [MEDIUM] CWE-20 GHSA-j467-jvch-4wxp: Cisco Email Security Appliance (ESA) devices with software 8
Cisco Email Security Appliance (ESA) devices with software 8.5.6-106 and 9.5.0-201 allow remote attackers to cause a denial of service (per-domain e-mail reception outage) by placing malformed DMARC policy data in DNS TXT records for a domain, aka Bug ID CSCuv14806.
Cisco
Cisco Email Security Appliance Malformed DMARC Policy Records File Modification Vulnerability
vendor_cisco·2015-07-15·CVSS 4.3
CVE-2015-4278 [MEDIUM] CWE-20 Cisco Email Security Appliance Malformed DMARC Policy Records File Modification Vulnerability
Cisco Email Security Appliance Malformed DMARC Policy Records File Modification Vulnerability
A vulnerability in the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to generate malformed Domain-Based Message Authentication, Reporting, and Conformance (DMARC) policy records to the targeted system.
The vulnerability occurs because the affected ESA is not able to receive email messages from domains with malformed DMARC policy records. An attacker could exploit this vulnerability by enabling DMARC or modifying system contents. A successful exploit could result in a denial of service (DoS) condition.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit this vulnerability, an attacker must enable DMARC or modify
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-07-16
Published