#VU25480 Input validation error in Cisco AsyncOS for Cisco Email Security Appliance - CVE-2019-1947
Published: February 20, 2020
Cisco AsyncOS for Cisco Email Security Appliance
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists within the email message filtering feature due to improper handling of email messages that contain large attachments. A remote attacker can send a malicious email message through the targeted device and cause a permanent DoS condition due to high CPU utilization.