CVE-2015-6327Cisco Adaptive Security Appliance Software vulnerability

CWE-3994 documents4 sources
Severity
7.8HIGHNVD
EPSS
0.4%
top 38.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateMay 17

Description

The IKEv1 implementation in Cisco Adaptive Security Appliance (ASA) software 7.2 and 8.2 before 8.2(5.58), 8.3 and 8.4 before 8.4(7.29), 8.5 through 8.7 before 8.7(1.17), 9.0 before 9.0(4.37), 9.1 before 9.1(6.8), 9.2 before 9.2(4), and 9.3 before 9.3(3) allows remote attackers to cause a denial of service (device reload) via crafted ISAKMP UDP packets, aka Bug ID CSCus94026.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xp9m-x8x2-9jh8: The IKEv1 implementation in Cisco Adaptive Security Appliance (ASA) software 72022-05-17
CVEList
CVE-2015-6327: The IKEv1 implementation in Cisco Adaptive Security Appliance (ASA) software 72015-10-25

📋Vendor Advisories

1
Cisco
Cisco ASA Software VPN ISAKMP Denial of Service Vulnerability2015-10-21
CVE-2015-6327 — Cisco vulnerability | cvebase