6.4
CVSSv2

CVE-2015-6285

Published: 14/09/2015 Updated: 04/01/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Format string vulnerability in Cisco Email Security Appliance (ESA) 7.6.0 and 8.0.0 allows remote malicious users to cause a denial of service (memory overwrite or service outage) via format string specifiers in an HTTP request, aka Bug ID CSCug21497.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco email security appliance 7.6.0

cisco email security appliance 8.0.0