Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2015-4321

EPSS 0.21% · P43
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2015-4321

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The Unicast Reverse Path Forwarding (uRPF) implementation in Cisco Adaptive Security Appliance (ASA) Software 9.3(1.50), 9.3(2.100), 9.3(3), and 9.4(1) mishandles cases where an IP address belongs to an internal interface but is also in the ASA routing table, which allows remote attackers to bypass uRPF validation via spoofed packets, aka Bug ID CSCuv60724.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Cisco Adaptive Security Appliance Software Unicast Reverse Path Forwarding 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco Adaptive Security Appliance(ASA,自适应安全设备)是美国思科(Cisco)公司的一套防火墙设备。该设备还包括IPS(入侵防御系统)、SSL VPN、IPSec VPN、反垃圾邮件等。 Cisco ASA的Unicast Reverse Path Forwarding(uRPF)功能存在安全漏洞,该漏洞源于程序没有正确执行uRPF验证。远程攻击者可利用该漏洞绕过uRPF验证检查,错误地转发数据包。以下版本受到影响:Cisco ASA 9.3(1.50)版本,9.3(
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2015-4321

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2015-4321

登录查看更多情报信息。

Same Patch Batch · n/a · 2015-08-20 · 29 CVEs total

CVE-2015-4319Cisco TelePresence Video Communication Server Expressway 安全漏洞
CVE-2015-6530OpenText Secure MFT 跨站脚本漏洞
CVE-2015-6529phpipam 跨站脚本漏洞
CVE-2015-6528Coppermine Photo Gallery 跨站脚本漏洞
CVE-2015-3219OpenStack Horizon 跨站脚本漏洞
CVE-2015-4318Cisco TelePresence Video Communication Server Expressway 拒绝服务漏洞
CVE-2015-4536EMC Documentum Content Server 信息泄露漏洞
CVE-2015-4535EMC Documentum Content Server Java Method Server 权限许可和访问控制漏洞
CVE-2015-4534EMC Documentum Content Server Java Method Server 输入验证漏洞
CVE-2015-4533EMC Documentum Content Server 权限许可和访问控制漏洞
CVE-2015-4532EMC Documentum Content Server 权限许可和访问控制漏洞
CVE-2015-4531EMC Documentum Content Server 权限许可和访问控制漏洞
CVE-2015-4530多款EMC Documentum产品跨站请求伪造漏洞
CVE-2015-4329Cisco TelePresence Video Communication Server Expressway 输入验证漏洞
CVE-2015-4314Cisco TelePresence Video Communication Server Expressway System Snapshot 安全漏洞
CVE-2015-4316Cisco TelePresence Video Communication Server Expressway 安全漏洞
CVE-2015-4303Cisco TelePresence Video Communication Server 权限许可和访问控制漏洞
CVE-2015-0542EMC RSA Archer GRC 跨站请求伪造漏洞
CVE-2015-0537多款EMC RSA产品数字错误漏洞
CVE-2015-0536EMC RSA BSAFE Micro Edition Suite和RSA BSAFE SSL-C 数字错误漏洞

Showing top 20 of 29 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2015-4321

No comments yet


Leave a comment