Cisco Cloud Email Security (CES) 12.5.1-037

CPE Details

Cisco Cloud Email Security (CES) 12.5.1-037
12.5.1-037
2020-03-04
13h50 +00:00
2020-03-04
13h50 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cisco:cloud_email_security:12.5.1-037:*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

cloud_email_security

Version

12.5.1-037

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-3164 2020-03-04 18h40 +00:00 A vulnerability in the web-based management interface of Cisco AsyncOS for Cisco Email Security Appliance (ESA), Cisco Web Security Appliance (WSA), and Cisco Content Security Management Appliance (SMA) could allow an unauthenticated remote attacker to cause high CPU usage on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to improper validation of specific HTTP request headers. An attacker could exploit this vulnerability by sending a malformed HTTP request to an affected device. A successful exploit could allow the attacker to trigger a prolonged status of high CPU utilization relative to the GUI process(es). Upon successful exploitation of this vulnerability, an affected device will still be operative, but its response time and overall performance may be degraded.
5.3
Medium
CVE-2020-3132 2020-02-19 19h16 +00:00 A vulnerability in the email message scanning feature of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to cause a temporary denial of service (DoS) condition on an affected device. The vulnerability is due to inadequate parsing mechanisms for specific email body components. An attacker could exploit this vulnerability by sending a malicious email containing a high number of shortened URLs through an affected device. A successful exploit could allow the attacker to consume processing resources, causing a DoS condition on an affected device. To successfully exploit this vulnerability, certain conditions beyond the control of the attacker must occur.
5.9
Medium