Input validation error in Cisco AsyncOS for Cisco Email Security Appliance and Cisco Content Security Management Appliance - CVE-2019-1983
Published: February 20, 2020
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists within the email message filtering feature due to insufficient input validation of email attachments. A remote attacker can send an email message with a crafted attachment through an affected
device and cause a denial of service condition on the target system.
Affected software
Cisco Content Security Management Appliance
How to mitigate CVE-2019-1983
Cisco Content Security Management Appliance - addressed in versions 11.0.1 161, 12.5.0 633