MIME Header Filtering Bypass in Cisco Email Security Appliances
CVE-2017-3818
What is CVE-2017-3818?
A vulnerability in the Multipurpose Internet Mail Extensions (MIME) scanner of Cisco AsyncOS Software for Cisco Email Security Appliances allows an unauthenticated remote attacker to bypass user-configured filters on the device. This vulnerability affects all releases prior to the first fixed release of Cisco AsyncOS Software, applicable to both virtual and hardware appliances. If the software is set up to apply message or content filters to incoming email attachments, it can be exploited. Users should ensure they upgrade to the appropriate fixed release to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco AsyncOS 9.7.1-066 Cisco AsyncOS 9.7.1-066
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved