7.5
CVSSv3

CVE-2016-1381

Published: 25/05/2016 Updated: 01/12/2016
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Memory leak in Cisco AsyncOS 8.5 up to and including 9.0 prior to 9.0.1-162 on Web Security Appliance (WSA) devices allows remote malicious users to cause a denial of service (memory consumption) via an HTTP file-range request for cached content, aka Bug ID CSCuw97270.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco web_security_appliance 8.5.3-055

cisco web_security_appliance 8.5.1-021

cisco web_security_appliance 9.0.0-193

cisco web_security_appliance 9.0_base

cisco web_security_appliance 9.1.0-000

cisco web_security_appliance 9.1_base

cisco web_security_appliance 8.5.0-497

cisco web_security_appliance 8.5.0.000

cisco web_security_appliance 8.5.2-024

cisco web_security_appliance 8.5.2-027