AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-6291

HIGH · CVSS 7.8 EPSS 1.93%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-11-06 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2015-6291
Severity
HIGH
CVSS
7.8
EPSS
1.93%
Cisco

Original NVD Description

Cisco AsyncOS before 8.5.7-043, 9.x before 9.1.1-023, and 9.5.x and 9.6.x before 9.6.0-046 on Email Security Appliance (ESA) devices mishandles malformed fields during body-contains, attachment-contains, every-attachment-contains, attachment-binary-contains, dictionary-match, and attachment-dictionary-match filtering, which allows remote attackers to cause a denial of service (memory consumption) via a crafted attachment in an e-mail message, aka Bug ID CSCuv47151.