CVE-2015-6321

Cisco AsyncOS before 8.5.7-042, 9.x before 9.1.0-032, 9.1.x before 9.1.1-023, and 9.5.x and 9.6.x before 9.6.0-042 on Email Security Appliance (ESA) devices; before 9.1.0-032, 9.1.1 before 9.1.1-005, and 9.5.x before 9.5.0-025 on Content Security Management Appliance (SMA) devices; and before 7.7.0-725 and 8.x before 8.0.8-113 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via a flood of TCP packets, aka Bug IDs CSCus79774, CSCus79777, and CSCzv95795.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:N/A:C
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
VendorProductVersion
ciscoweb_security_appliance
5.6.0-623
ciscoweb_security_appliance
6.0.0-000
ciscoweb_security_appliance
7.5.0-000
ciscoweb_security_appliance
7.5.0-825
ciscoweb_security_appliance
7.5.1-000
ciscoweb_security_appliance
7.5.2-000
ciscoweb_security_appliance
7.7.0-000
ciscoweb_security_appliance
7.7.1-000
ciscoweb_security_appliance
8.0.0-000
ciscoweb_security_appliance
8.5.0.000
ciscocontent_security_management_appliance
7.8.0-328
ciscocontent_security_management_appliance
7.8.1-001
ciscocontent_security_management_appliance
7.9.0-201
ciscocontent_security_management_appliance
7.9.2-116
ciscocontent_security_management_appliance
8.0.1-031
ciscocontent_security_management_appliance
8.1.0-001
ciscocontent_security_management_appliance
8.1.1-033
ciscocontent_security_management_appliance
8.1.2-000
ciscocontent_security_management_appliance
8.2.0-238
ciscocontent_security_management_appliance
8.3.0-350
ciscocontent_security_management_appliance
8.3.5-061
ciscocontent_security_management_appliance
8.3.6-014
ciscocontent_security_management_appliance
8.3.7-010
ciscocontent_security_management_appliance
8.4.0-150
ciscocontent_security_management_appliance
9.0.0-073
ciscocontent_security_management_appliance
9.1.0-004
ciscoemail_security_appliance
7.6.1-000
ciscoemail_security_appliance
7.6.3-000
ciscoemail_security_appliance
7.7.0-000
ciscoemail_security_appliance
7.7.1-000
ciscoemail_security_appliance
7.8.0-311
ciscoemail_security_appliance
8.5.6-052
ciscoemail_security_appliance
8.6.0-011
ciscoemail_security_appliance
8.9.1-000
ciscoemail_security_appliance
8.9.2-032
ciscoemail_security_appliance
9.0.0-212
ciscoemail_security_appliance
9.0.5-000
ciscoemail_security_appliance
9.1.0-011
ciscoemail_security_appliance
9.4.4-000
ciscoemail_security_appliance
9.5.0-000
𝑥
= Vulnerable software versions
Common Weakness Enumeration