Vulnerability Details CVE-2015-6285
Format string vulnerability in Cisco Email Security Appliance (ESA) 7.6.0 and 8.0.0 allows remote attackers to cause a denial of service (memory overwrite or service outage) via format string specifiers in an HTTP request, aka Bug ID CSCug21497.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.1%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2015-6285
-
cpe:2.3:h:cisco:email_security_appliance:7.6.0
-
cpe:2.3:h:cisco:email_security_appliance:8.0.0