Vulnerability Details CVE-2016-1315
The proxy engine in Cisco Advanced Malware Protection (AMP), when used with Email Security Appliance (ESA) 9.5.0-201, 9.6.0-051, and 9.7.0-125, allows remote attackers to bypass intended content restrictions via a malformed e-mail message containing an encoded file, aka Bug ID CSCux45338.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.3%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2016-1315
-
cpe:2.3:o:cisco:email_security_appliance_firmeware:9.1.0-032
-
cpe:2.3:o:cisco:email_security_appliance_firmeware:9.5.0-201
-
cpe:2.3:o:cisco:email_security_appliance_firmeware:9.6.0-051
-
cpe:2.3:o:cisco:email_security_appliance_firmeware:9.7.0-125
-
cpe:2.3:o:cisco:email_security_appliance_firmeware:9.7.0-782