A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of FTP data. An attacker could exploit this vulnerability by sending malicious FTP traffic through an affected device. A successful exploit could allow the attacker to cause a DoS condition on the affected device.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Cisco
Subscribe
|
Adaptive Security Appliance
Subscribe
Adaptive Security Appliance Software
Subscribe
Asa 5505
Subscribe
Asa 5510
Subscribe
Asa 5512-x
Subscribe
Asa 5515-x
Subscribe
Asa 5520
Subscribe
Asa 5525-x
Subscribe
Asa 5550
Subscribe
Asa 5555-x
Subscribe
Asa 5580
Subscribe
Asa 5585-x
Subscribe
Firepower Threat Defense
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-4264 | A vulnerability in the FTP inspection engine of Cisco Adaptive Security (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of FTP data. An attacker could exploit this vulnerability by sending malicious FTP traffic through an affected device. A successful exploit could allow the attacker to cause a DoS condition on the affected device. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 19 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-19T18:54:42.216Z
Reserved: 2019-06-04T00:00:00
Link: CVE-2019-12673
Updated: 2024-08-04T23:24:39.388Z
Status : Modified
Published: 2019-10-02T19:15:12.077
Modified: 2024-11-21T04:23:19.777
Link: CVE-2019-12673
No data.
OpenCVE Enrichment
No data.
EUVD