← Back to CVE List
Vulnerability Intelligence Report

CVE-2018-0240

Multiple vulnerabilities in the Application Layer Protocol Inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerabilities are due to logical errors during traffic inspection. An attacker could exploit these vulnerabilities by sending a high volume of malicious traffic across an affected device. An exploit could allow the attacker to cause a deadlock condition, resulting in a reload of an affected device. These vulnerabilities affect Cisco ASA Software and Cisco FTD Software configured for Application Layer Protocol Inspection running on the following Cisco products: 3000 Series Industrial Security Appliance (ISA), ASA 5500 Series Adaptive Security Appliances, ASA 5500-X Series Next-Generation Firewalls, ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers, Adaptive Security Virtual Appliance (ASAv), Firepower 2100 Series Security Appliance, Firepower 4100 Series Security Appliance, Firepower 9300 ASA Security Module, FTD Virtual (FTDv). Cisco Bug IDs: CSCve61540, CSCvh23085, CSCvh95456.

No Active Exploit Signals
CVSS Base Score
8.6
HIGH
EPSS Probability:3.86%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

Affected Products & Versions

Vendor Product Affected Versions
cisco firepower_threat_defense all
cisco adaptive_security_appliance_software all
cisco adaptive_security_virtual_appliance all
cisco firepower_threat_defense_virtual all
cisco 7604 all
cisco 7606-s all
cisco 7609-s all
cisco 7613-s all
cisco asa-5505 all
cisco asa-5506-x all
cisco asa-5506h-x all
cisco asa-5512-x all
cisco asa-5515-x all
cisco asa-5520 all
cisco asa-5540 all
cisco asa-5545-x all
cisco asa-5555-x all
cisco asa-5585-x all
cisco asa_5506-x all
cisco asa_5506w-x all
cisco asa_5508-x all
cisco asa_5510 all
cisco asa_5516-x all
cisco asa_5525-x all
cisco asa_5550 all
cisco asa_5555-x all
cisco asa_5580 all
cisco catalyst_6500-e all
cisco catalyst_6503-e all
cisco catalyst_6504-e all
cisco catalyst_6506-e all
cisco catalyst_6509-e all
cisco catalyst_6509-neb-a all
cisco catalyst_6509-v-e all
cisco catalyst_6513 all
cisco catalyst_6513-e all
cisco firepower_2110 all
cisco firepower_2120 all
cisco firepower_2130 all
cisco firepower_2140 all
cisco firepower_4110 all
cisco firepower_4120 all
cisco firepower_4140 all
cisco firepower_4150 all
cisco firepower_9300 all
cisco isa-3000-2c2f all
cisco isa-3000-4c all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
3.860%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityCisco Systems, Inc. · Hosted Service · USA
Reserved2017-11-27T00:00:00
Published2018-04-19T20:00:00
Patch Date2018-04-19
Last Updated2024-11-29T15:17:08

LINK COPIED TO CLIPBOARD