CVE-2015-6379 — Cisco Adaptive Security Appliance Software vulnerability

CWE-3994 documents4 sources
Severity
6.8MEDIUMNVD
EPSS
0.8%
top 26.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 25
Latest updateMay 17

Description

The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denial of service (device crash) via a crafted XML document, aka Bug ID CSCut14223.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 8.0 | Impact: 6.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xm5j-2w65-39cm: The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8↗2022-05-17
â–¶
CVEList
CVE-2015-6379: The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8↗2015-11-25
â–¶

📋Vendor Advisories

1
Cisco
Cisco ASA Management Interface XML Parser Denial of Service Vulnerability↗2015-11-24
â–¶
CVE-2015-6379 — Cisco vulnerability | cvebase