CVE-2011-3297

Cisco Firewall Services Module DoS via Authentication Request Flood

Title source: llm
STIX 2.1

Description

Cisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7), when certain authentication configurations are used, allows remote attackers to cause a denial of service (module crash) by making many authentication requests for network access, aka Bug ID CSCtn15697.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/70327
Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20111005-fwsm.shtml

Scores

EPSS 0.0139
EPSS Percentile 68.9%

Details

CWE
CWE-287
Status published
Products (50)
cisco/catalyst_6500
cisco/catalyst_7600
cisco/firewall_services_module_software 3.1
cisco/firewall_services_module_software 3.1\(2\)
cisco/firewall_services_module_software 3.1\(3\)
cisco/firewall_services_module_software 3.1\(4\)
cisco/firewall_services_module_software 3.1\(5\)
cisco/firewall_services_module_software 3.1\(6\)
cisco/firewall_services_module_software 3.1\(7\)
cisco/firewall_services_module_software 3.1\(8\)
... and 40 more
Published Oct 06, 2011
Tracked Since Feb 18, 2026