CVE-2015-4184

The anti-spam scanner on Cisco Email Security Appliance (ESA) devices 3.3.1-09, 7.5.1-gpl-022, and 8.5.6-074 allows remote attackers to bypass intended e-mail restrictions via a malformed DNS SPF record, aka Bug IDs CSCuu35853 and CSCuu37733.
References
Link Resource
http://tools.cisco.com/security/center/viewAlert.x?alertId=39339 Vendor Advisory
http://www.securityfocus.com/bid/75181 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1032582 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:h:cisco:email_security_appliance:3.331-09:*:*:*:*:*:*:*
cpe:2.3:h:cisco:email_security_appliance:7.5.1-gpl-022:*:*:*:*:*:*:*
cpe:2.3:h:cisco:email_security_appliance:8.5.6-074:*:*:*:*:*:*:*

History

No history.

Information

Published : 2015-06-13 10:59

Updated : 2023-12-10 11:46


NVD link : CVE-2015-4184

Mitre link : CVE-2015-4184

CVE.ORG link : CVE-2015-4184


JSON object : View

Products Affected

cisco

  • email_security_appliance
CWE
CWE-20

Improper Input Validation