CVE-2015-0677
Published Apr 13, 2015
Last updated a year ago
Overview
- Description
- The XML parser in Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.28), 8.6 before 8.6(1.17), 9.0 before 9.0(4.33), 9.1 before 9.1(6), 9.2 before 9.2(3.4), and 9.3 before 9.3(3), when Clientless SSL VPN, AnyConnect SSL VPN, or AnyConnect IKEv2 VPN is used, allows remote attackers to cause a denial of service (VPN outage or device reload) via a crafted XML document, aka Bug ID CSCus95290.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "989F9AC4-C2D1-49A0-95C3-79A4EB827E07" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFE2E079-D7AC-4FE9-8938-A75C12AF5CA4" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B442C852-2465-4EA8-A977-1F10A4CE23AA" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C6DB6ED4-3095-46C1-9CB6-2975A7B05303" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE68CD8E-B9CF-4519-8B0E-4C4488B34887" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D762C9A7-005C-44FD-9BB2-7A1DD4EBE90B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE0B1212-87F3-46E5-B14A-C0C6BBAAAC98" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "518D4826-06B0-4DDC-B082-A536418FD292" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.3.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E343DE08-58FA-4C39-99F9-8CB5F57D0CD8" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76363698-DB62-4D92-8EE4-069891A9F92C" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6159BEE3-D097-4E07-9962-06DB740E2AE3" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.4.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD606591-F69A-47AD-9256-20B98CA16135" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A4EF3895-F372-45D3-9C7D-15F5C4712D08" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.4.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DC5960D-B917-4ABA-850F-A710676ACB40" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B746A138-6650-49A3-87C8-3728FE5CF215" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.5.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E50C2A13-5A8B-4FA5-ABB8-1157E560503B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "909F9D55-9276-4CF1-BC63-7CEEF8F25C21" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F383D276-D5EC-4335-AC09-9D30F6443AF0" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39C2A7FF-6AC3-42B5-954A-9AA5950C523A" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9D7F36A8-C291-423D-AF28-56AAD8D0F712" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3C2009F4-F832-49D6-8346-54A7328BD93B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9221DD4-498A-4867-B647-47E42299CE45" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4.7.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B839A425-E08C-41B1-9270-E177E40B1E27" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FF969BE-46BB-4AD7-85AB-8384426E9551" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F8EEA7A5-67FD-4CA4-8FF8-4B17A9C47B61" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94E618B3-DD03-4ECD-AB9B-97F1EDF95E79" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D0DFE19-1C68-40E6-B8CD-9CC03F8B4281" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "20424324-881A-496B-BC55-62AA75994249" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D67012F3-5153-400E-BD6F-EB0949875F2B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E40E9AB5-26E0-4BA2-9AFA-496BAA0EAC77" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6.1.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6BA4B2D-187A-47EC-8BE1-7EA178549476" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "500ED3CC-4FE8-4A24-ACFE-8D7E35E50D22" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BD2AE76B-D04E-4D0C-85E4-8AD07F7BDEDB" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.2.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6E1C03C-0737-4E2B-B3F9-10770281F4AA" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C7052D2-0789-4A4D-917D-FCD894B7280F" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0956F0A8-7424-437C-AAD8-203183BEBFCC" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "49FB57F9-5B37-4509-B2EB-6A16DFE11F03" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "952F6504-9CD0-453E-8C25-02BB9EE818F6" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E842AF74-D1E3-4F71-80F9-197B38942405" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A0B97FB1-CC3A-40B5-853D-476E6C5D9D6A" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3F6293A8-C21E-46F6-ACC1-6BBAD419B41F" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC1A48B1-112A-41C2-BC01-BCCF5794553D" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2AE7036-C8EE-441F-94A4-DE8A9E89CA8C" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6448B4B4-022D-4D4A-A6DE-0090CEA12595" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42813600-3186-4D19-8AF2-F4F98D3C6740" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0.4.29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BC0969E6-151D-4298-8EC8-68D7880E994B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4714F698-BBAE-47BB-99E8-F90D22415EDD" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB55BC7E-0B3F-4202-8768-08F27B763926" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CFB01683-C482-4A5B-90FA-B5266BEA452E" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA16481A-4A47-4A8E-8C78-87B3A171280A" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C0258ED-6ED0-49C7-A13A-368711649FFF" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B7A71AA-E1A6-47B7-B2B2-A3115CAA4058" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D448BB56-5B2E-4B3E-B7E8-1F4991F23D81" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.4.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E0346EAC-BDD1-4DC5-B8CA-20579C44AFE4" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2049D602-54F1-4072-936E-0D7E337162B8" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.5.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0710D6C8-AD34-43E2-B72B-315FFF3DC34F" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.5.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70F8F1D2-2196-44C4-B420-824F49BB4ACF" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.5.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5E14B8D3-6D53-4E84-9B5D-24667B192C4B" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.1.5.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A05B2DFD-A0EF-42BE-B00B-334E78CA8C10" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9C31567-8AEB-49C6-AA60-4150411D62AA" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA140CB2-C17C-4164-A59A-8585906057BA" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "468D98A7-92D5-4C01-9EDD-CB44B85EA6BB" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BAAC9FE-CCF0-4385-B5E9-FC424CD3EFD5" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C9DEB1C-F9B9-4291-92B5-8EEEADC57E51" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39330218-32FA-42FF-B5CA-288B7D140304" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.2.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A92D7CED-D036-414B-B9EB-DCAF7F425A7D" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "26D99395-D18D-458E-9880-19B7767F69D0" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.3.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2E4CE047-3FEF-4A72-AD06-EC77D71EBCD9" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED33F68A-9EB0-416A-A0A5-0DF2C349FFEE" }, { "criteria": "cpe:2.3:o:cisco:adaptive_security_appliance_software:9.3.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F7DD812-DC72-4816-8B0F-361C32B2CD2F" } ], "operator": "OR" } ] } ]