This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Cisco First view 2016-05-24
Product Web Security Appliance (Wsa) Last view 2016-05-24
Version 8.0.7-142 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:cisco:web_security_appliance_(wsa)

Activity : Overall

Related : CVE

  Date Alert Description
7.5 2016-05-24 CVE-2016-1383

Memory leak in Cisco AsyncOS through 8.8 on Web Security Appliance (WSA) devices allows remote attackers to cause a denial of service (memory consumption) via an unspecified HTTP status code, aka Bug ID CSCur28305.

7.5 2016-05-24 CVE-2016-1382

Cisco AsyncOS before 8.5.3-069 and 8.6 through 8.8 on Web Security Appliance (WSA) devices mishandles memory allocation for HTTP requests, which allows remote attackers to cause a denial of service (proxy-process reload) via a crafted request, aka Bug ID CSCuu02529.

CWE : Common Weakness Enumeration

%idName
50% (1) CWE-399 Resource Management Errors
50% (1) CWE-20 Improper Input Validation

Nessus® Vulnerability Scanner

id Description
2016-05-26 Name: The remote security appliance is missing a vendor-supplied patch.
File: cisco-sa-20160518-wsa1_to_wsa4.nasl - Type: ACT_GATHER_INFO