Vulnerabilities > Cisco > Firewall Services Module

DATE CVE VULNERABILITY TITLE RISK
2007-02-16 CVE-2007-0967 Products Multiple Remote Denial Of Service vulnerability in Cisco Firewall Services Module 3.1
Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.1) allows remote attackers to cause a denial of service (device reboot) via malformed SNMP requests.
network
low complexity
cisco
7.8
2007-02-16 CVE-2007-0966 Products Multiple Remote Denial Of Service vulnerability in Cisco Firewall Services Module 3.1
Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.11), when the HTTPS server is enabled, allows remote attackers to cause a denial of service (device reboot) via certain HTTPS traffic.
network
low complexity
cisco
7.8
2007-02-16 CVE-2007-0965 Products Multiple Remote Denial Of Service vulnerability in Cisco Firewall Services Module 3.1
Cisco FWSM 3.x before 3.1(3.2), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote attackers to cause a denial of service (device reboot) via a long HTTP request.
network
low complexity
cisco
7.8
2007-02-16 CVE-2007-0964 Products Multiple Remote Denial Of Service vulnerability in Cisco Firewall Services Module 3.1
Cisco FWSM 3.x before 3.1(3.18), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote attackers to cause a denial of service (device reboot) via a malformed HTTPS request.
network
high complexity
cisco
5.4
2007-02-16 CVE-2007-0963 Products Multiple Remote Denial Of Service vulnerability in Cisco Firewall Services Module 3.1
Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.3), when set to log at the "debug" level, allows remote attackers to cause a denial of service (device reboot) by sending packets that are not of a particular protocol such as TCP or UDP, which triggers the reboot during generation of Syslog message 710006.
network
low complexity
cisco
7.8
2007-02-16 CVE-2007-0962 Products Multiple Remote Denial Of Service vulnerability in Cisco products
Cisco PIX 500 and ASA 5500 Series Security Appliances 7.0 before 7.0(4.14) and 7.1 before 7.1(2.1), and the FWSM 2.x before 2.3(4.12) and 3.x before 3.1(3.24), when "inspect http" is enabled, allows remote attackers to cause a denial of service (device reboot) via malformed HTTP traffic.
network
low complexity
cisco
7.8
2005-05-11 CVE-2005-1517 Remote Security vulnerability in FWSM for Cisco Catalyst 6500/7600 Series
Unknown vulnerability in Cisco Firewall Services Module (FWSM) 2.3.1 and earlier, when using URL, FTP, or HTTPS filtering exceptions, allows certain TCP packets to bypass access control lists (ACLs).
network
low complexity
cisco
7.5
2004-11-23 CVE-2004-0081 OpenSSL 0.9.6 before 0.9.6d does not properly handle unknown message types, which allows remote attackers to cause a denial of service (infinite loop), as demonstrated using the Codenomicon TLS Test Tool. 5.0
2004-11-23 CVE-2004-0079 NULL Pointer Dereference vulnerability in multiple products
The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.
7.5
2004-01-05 CVE-2003-1002 Denial-Of-Service vulnerability in Catalyst 7600
Cisco Firewall Services Module (FWSM) in Cisco Catalyst 6500 and 7600 series devices allows remote attackers to cause a denial of service (crash and reload) via an SNMPv3 message when snmp-server is set.
network
low complexity
cisco
5.0