CVE-2015-6309
published 2015-10-02CVE-2015-6309: Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumption and…
PriorityP429medium6.8CVSS 2.0
AVNACLAuSCNINAC
EPSS
1.70%
74.6th percentile
Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumption and device reload) via crafted HTTP requests, aka Bug ID CSCuw32211.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | email_security_appliance | — | — |
| cisco | email_security_appliance_firmware | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Email Security Appliance Max Files Denial of Service Vulnerability
vendor_cisco·2015-09-30·CVSS 6.8
CVE-2015-6309 [MEDIUM] CWE-399 Cisco Email Security Appliance Max Files Denial of Service Vulnerability
Cisco Email Security Appliance Max Files Denial of Service Vulnerability
A vulnerability in file descriptor handling of the Cisco Email Security Appliance (ESA) could allow an authenticated, remote attacker to cause a denial of service (DoS) condition due to the affected device unexpectedly reloading.
The vulnerability is due to failure to release file descriptors when the requested file action is completed. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. A successful exploit could allow the attacker to cause a DoS condition due to the affected device failing to release file descriptors. When all file descriptors are in use, the device can reload unexpectedly.
Cisco has confirmed the vulnerability; however, software updates are not
GHSA
GHSA-52q5-573g-349h: Cisco Email Security Appliance (ESA) 8
ghsa_unreviewed·2022-05-14
CVE-2015-6309 [MEDIUM] GHSA-52q5-573g-349h: Cisco Email Security Appliance (ESA) 8
Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumption and device reload) via crafted HTTP requests, aka Bug ID CSCuw32211.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-10-02
Published