MEDIUM · 6.8

CVE-2015-6379

The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denial of service (device crash) via a crafted XML docum...

Vulnerability Description

The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denial of service (device crash) via a crafted XML document, aka Bug ID CSCut14223.

CVSS Score

6.8

MEDIUM

AV:N/AC:L/Au:S/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoAdaptive Security Appliance Software8.4.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-6379?

CVE-2015-6379 is a vulnerability with a CVSS score of 6.8 (MEDIUM). The XML parser in the management interface in Cisco Adaptive Security Appliance (ASA) Software 8.4 allows remote authenticated users to cause a denial of service (device crash) via a crafted XML docum...

How severe is CVE-2015-6379?

CVE-2015-6379 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-6379?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Adaptive Security Appliance Software.