← Back

CVE-2015-0624

nvd nist
Published: Feb 21, 2015Modified: May 6, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

The web framework in Cisco AsyncOS on Email Security Appliance (ESA), Content Security Management Appliance (SMA), and Web Security Appliance (WSA) devices allows remote attackers to trigger redirects via a crafted HTTP header, aka Bug IDs CSCur44412, CSCur44415, CSCur89630, CSCur89636, CSCur89633, and CSCur89639.

Affected (3)

3 products
Email Security Appliance Firmware
Web Security Appliance
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions

References (10)

Timeline

No history available yet.