Skip to main content

Vendor/product archive

cisco / email_security_appliance_firmware CVEs

Beta · best-effort

32 CVEs tagged to cisco / email_security_appliance_firmware2 Critical, 11 High, 19 Medium, 0 Low, 0 Unrated.

CVE-2019-15988

Published Nov 26, 2019

A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-12706

Published Oct 2, 2019

A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attack…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2019-1955

Published Aug 8, 2019

A vulnerability in the Sender Policy Framework (SPF) functionality of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an unauthenticated, remote attac…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-15453

Published Jan 10, 2019

A vulnerability in the Secure/Multipurpose Internet Mail Extensions (S/MIME) Decryption and Verification or S/MIME Public Key Harvesting features of Cisco AsyncOS Software for Cis…

CVSS 8.6 · High
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2017-12309

Published Nov 16, 2017

A vulnerability in the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to conduct a HTTP response splitting attack. The vulnerability is due t…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-6671

Published Jun 13, 2017

A vulnerability in the email message scanning of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass configur…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-3818

Published Feb 3, 2017

A vulnerability in the Multipurpose Internet Mail Extensions (MIME) scanner of Cisco AsyncOS Software for Cisco Email Security Appliances (ESA) could allow an unauthenticated, rem…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6463

Published Nov 19, 2016

A vulnerability in the email filtering functionality of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to bypass Advanc…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6462

Published Nov 19, 2016

A vulnerability in the email filtering functionality of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to bypass Advanc…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6458

Published Nov 19, 2016

A vulnerability in the content filtering functionality of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to bypass cont…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-6406

Published Sep 22, 2016

Cisco IronPort AsyncOS 9.1.2-023, 9.1.2-028, 9.1.2-036, 9.7.2-046, 9.7.2-047, 9.7.2-054, 10.0.0-124, and 10.0.0-125 on Email Security Appliance (ESA) devices, when Enrollment Clie…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
20.4
Vendor/product tagsBeta · best-effort

CVE-2015-4278

Published Jul 16, 2015

Cisco Email Security Appliance (ESA) devices with software 8.5.6-106 and 9.5.0-201 allow remote attackers to cause a denial of service (per-domain e-mail reception outage) by plac…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0734

Published May 15, 2015

Multiple cross-site scripting (XSS) vulnerabilities on the Cisco Email Security Appliance (ESA) 8.5.6-106 allow remote attackers to inject arbitrary web script or HTML via unspeci…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 32 CVEsPage 1 of 2