Vulnerabilities > Cisco > Asyncos > 9.7.2.065

DATE CVE VULNERABILITY TITLE RISK
2020-06-18 CVE-2020-3368 Improper Input Validation vulnerability in Cisco Asyncos
A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass the URL reputation filters on an affected device.
network
low complexity
cisco CWE-20
5.0
2018-01-18 CVE-2018-0095 Unspecified vulnerability in Cisco Asyncos 9.1.1005/9.7.2065
A vulnerability in the administrative shell of Cisco AsyncOS on Cisco Email Security Appliance (ESA) and Content Security Management Appliance (SMA) could allow an authenticated, local attacker to escalate their privilege level and gain root access.
local
low complexity
cisco
7.2