CVE-2016-6358: Cisco Email Security Appliance
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
A vulnerability in local FTP to the Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition when the FTP application unexpectedly quits. More Information: CSCux68539. Known Affected Releases: 9.1.0-032 9.7.1-000. Known Fixed Releases: 9.1.1-038.
Affected products
- Cisco Email Security Appliance: version 9.7.1-066 only; version 9.7.2-046 only; version 9.7.2-047 only; version 9.7.2-054 only; version 9.9.6-026 only; version 9.9_base only
Published 2016-10-28. Last modified 2026-06-17.