CVE-2015-6386
published 2015-12-01CVE-2015-6386: The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8.0.7-142 and 8.5.1-021 allows remote attackers to cause a denial of…
PriorityP426medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.74%
75.4th percentile
The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8.0.7-142 and 8.5.1-021 allows remote attackers to cause a denial of service (CPU consumption) via FTP sessions in which the control connection is ended after data transfer, aka Bug ID CSCut94150.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | web_security_appliance | — | — |
| cisco | web_security_appliance | — | — |
| cisco | web_security_appliance_native_ftp | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
vendor_cisco·2015-11-30·CVSS 5.0
CVE-2015-6386 [MEDIUM] CWE-399 Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
A vulnerability in the native passthrough FTP functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to high CPU utilization.
The vulnerability occurs when the FTP client terminates the FTP control connection when the data transfer is complete. An attacker could exploit this vulnerability by initiating FTP connections through the WSA. An exploit could allow the attacker to cause high CPU utilization of the Cisco WSA proxy process, causing a partial DoS condition. The attacker's choice of FTP client and how that client closes the FTP control connection will affect the attacker's ability to exploit this vulnerabili
Cisco
Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
vendor_cisco
CVE-2015-6386 Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
CVE-2015-6386: Cisco Web Security Appliance Native FTP Denial of Service Vulnerability
A vulnerability in the native passthrough FTP functionality of the Cisco Web Security Appliance (WSA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to high CPU utilization. The vulnerability occurs when the FTP client terminates the FTP control connection when the data transfer is complete. An attacker could exploit this vulnerability by initiating FTP connections through the WSA. An exploit could allow the attacker to cause high CPU utilization of the Cisco WSA proxy process, causing a partial DoS condition. The attacker's choice of FTP client and how that client closes the FTP control connection will affect the attacker's ability to exploit thi
GHSA
GHSA-vr38-pghp-52qv: The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8
ghsa_unreviewed·2022-05-17
CVE-2015-6386 [MEDIUM] GHSA-vr38-pghp-52qv: The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8
The passthrough FTP feature on Cisco Web Security Appliance (WSA) devices with software 8.0.7-142 and 8.5.1-021 allows remote attackers to cause a denial of service (CPU consumption) via FTP sessions in which the control connection is ended after data transfer, aka Bug ID CSCut94150.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-12-01
Published