Vulnerability Details CVE-2015-6423
The DCERPC Inspection implementation in Cisco Adaptive Security Appliance (ASA) Software 9.4.1 through 9.5.1 allows remote authenticated users to bypass an intended DCERPC-only ACL by sending arbitrary network traffic, aka Bug ID CSCuu67782.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 36.8%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 3.5
Products affected by CVE-2015-6423
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.1
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.1.1
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.1.2
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.1.3
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.1.5
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.4.2
-
cpe:2.3:o:cisco:adaptive_security_appliance_software:9.5.1