Vulnerability Details CVE-2010-0149
Unspecified vulnerability in Cisco ASA 5500 Series Adaptive Security Appliance 7.2 before 7.2(4.46), 8.0 before 8.0(4.38), 8.1 before 8.1(2.29), and 8.2 before 8.2(1.5); and Cisco PIX 500 Series Security Appliance; allows remote attackers to cause a denial of service (prevention of new connections) via crafted TCP segments during termination of the TCP connection that cause the connection to remain in CLOSEWAIT status, aka "TCP Connection Exhaustion Denial of Service Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.01
EPSS Ranking 76.3%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2010-0149
-
cpe:2.3:h:cisco:asa_5500:7.1
-
cpe:2.3:h:cisco:asa_5500:7.2
-
cpe:2.3:h:cisco:asa_5500:8.0
-
cpe:2.3:h:cisco:asa_5500:8.1
-
cpe:2.3:h:cisco:asa_5500:8.2
-
cpe:2.3:h:cisco:pix_500:-