Email Security Appliances Vulnerability in Cisco AsyncOS Software
CVE-2016-1481
7.5HIGH
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 28 October 2016
What is CVE-2016-1481?
A vulnerability in the email message filtering feature of Cisco AsyncOS Software for Email Security Appliances allows unauthenticated remote attackers to exploit specific rules in configured message filters, potentially leading to a denial of service (DoS) condition on affected devices. This issue affects all software releases before the first fixed versions, threatening both virtual and hardware appliances when message filtering is enabled. Known affected versions include 8.5.6-106, 9.1.0-032, and 9.7.0-125, while the fixed releases are 9.1.1-038 and 9.7.1-066.
Affected Version(s)
Cisco AsyncOS through 9.7.0-125 Cisco AsyncOS through 9.7.0-125