#VU24669 Input validation error in Cisco AsyncOS for Cisco Email Security Appliance - CVE-2020-3133
Published: January 27, 2020
Cisco AsyncOS for Cisco Email Security Appliance
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to bypass configured filters on the target device.
The vulnerability exists due to improper validation of incoming emails. A remote attacker can send a specially crafted email message to a recipient protected by the ESA and bypass the configured content filters, which could allow malicious content to pass through the device.