CVE-2021-1501
Cisco Cisco Adaptive Security Appliance (ASA) Software, secure firewall threat defense, adaptive security appliance software
A vulnerability in the SIP inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a crash and reload of an affected device, resulting in a denial of service (DoS) condition.The vulnerability is due to a crash that occurs during a hash lookup for a SIP pinhole connection. An attacker could exploit this vulnerability by sending crafted SIP traffic through an affected device. A successful exploit could allow the attacker to cause a crash and reload of the affected device.
- CVSS
- 7.5
- EPSS
- 1.34% 69.4% percentile
- CISA KEV
- Not listed
- Published
- 2021.04.30