CVE-2015-4236
Cisco Email Security Appliance 8.5.6-073 8.5.6-074 9.0.0-461 - Denial of Service via Packet Flood
Title source: llmDescription
Cisco AsyncOS on Email Security Appliance (ESA) devices with software 8.5.6-073, 8.5.6-074, and 9.0.0-461, when clustering is enabled, allows remote attackers to cause a denial of service (clustering and SSH outage) via a packet flood, aka Bug IDs CSCur13704 and CSCuq05636.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1032855
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/75703
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/viewAlert.x?alertId=39785
Scores
EPSS
0.0239
EPSS Percentile
82.2%
Details
CWE
CWE-399
Status
published
Products (3)
cisco/email_security_appliance
8.5.6-074
cisco/email_security_appliance_firmware
8.5.6-073
cisco/email_security_appliance_firmware
9.0.0-461
Published
Jul 10, 2015
Tracked Since
Feb 18, 2026