Cisco PIX 500 and ASA 5500 Series Security Appliances 7.0 before 7.0(4.14) and 7.1 before 7.1(2.1), and the FWSM 2.x before 2.3(4.12) and 3.x before 3.1(3.24), when "inspect http" is enabled, allows remote attackers to cause a denial of service (device reboot) via malformed HTTP traffic.
2007-02-16T00:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.8 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Hardware | cisco | firewall_services_module | 2.3 | Yes |
Hardware | cisco | firewall_services_module | 3.1 | Yes |
Hardware | cisco | asa_5500 | 7.0 | Yes |
Hardware | cisco | asa_5500 | 7.1 | Yes |
Operating System | cisco | pix_firewall_software | 7.0 | Yes |
Operating System | cisco | pix_firewall_software | 7.1 | Yes |