A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to cause a buffer overflow on an affected system. The vulnerability is due to insufficient boundary checks for specific data that is provided to the web services interface of an affected system. An attacker could exploit this vulnerability by sending a malicious HTTP request. A successful exploit could allow the attacker to cause a buffer overflow condition on the affected system, which could disclose data fragments or cause the device to reload, resulting in a denial of service (DoS) condition.
History

Sat, 09 Nov 2024 00:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2021-04-29T17:31:14.652623Z

Updated: 2024-11-08T23:22:48.496Z

Reserved: 2020-11-13T00:00:00

Link: CVE-2021-1493

cve-icon Vulnrichment

Updated: 2024-08-03T16:11:17.385Z

cve-icon NVD

Status : Modified

Published: 2021-04-29T18:15:09.387

Modified: 2024-11-21T05:44:28.583

Link: CVE-2021-1493

cve-icon Redhat

No data.