Vulnslist

find the latest Cisco vulnerabilities

CVE-2016-6458

A vulnerability in the content filtering functionality of Cisco AsyncOS Software for Cisco Email Security Appliances could allow an unauthenticated, remote attacker to bypass content filters configured on an affected device. Email that should have been filtered could instead be forwarded by the device. This vulnerability affects all releases prior to the first fixed release of Cisco AsyncOS Software for Cisco Email Security Appliances, both virtual and hardware appliances, if the software is configured to use a content filter for email attachments that are protected or encrypted. More Information: CSCva52546. Known Affected Releases: 10.0.0-125 9.7.1-066.

SeverityHIGH
CVSS7.5
CWECWE-20
KEV
Published
Modified

Related Products

Product Advisory
Cisco Nexus Dashboard cisco-sa-20161102-esa
Cisco Catalyst PON Series Switches cisco-sa-20161102-esa
Cisco Application Centric Infrastructure Virtual Edge cisco-sa-20161102-esa
Cisco Secure Email cisco-sa-20161102-esa
Cisco Email Security Appliance (ESA) cisco-sa-20161102-esa