Firewall Services Module
Vendor:
First CVE: Jan 5, 2004 · Active for 22 years
30
Total CVEs
More Total CVEs than 96% of tracked products
3.0
Avg CVEs / Year
Higher CVE frequency than 76% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 41% of tracked products
3.3%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Firewall Services Module over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 5, 2004
22 years ago
Most Recent CVE
Aug 18, 2016
3,627 days ago
CVE Severity & Scoring
Firewall Services Module30 CVEs
30%
70%
All CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local1 (3.3%)
Network1 (3.3%)
Unknown28 (93.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (6.7%)
High0 (0.0%)
Unknown28 (93.3%)
User Interaction
None2 (6.7%)
Unknown28 (93.3%)
Required0 (0.0%)
Privileges Required
Low1 (3.3%)
High0 (0.0%)
None1 (3.3%)
Unknown28 (93.3%)
Top CVEs
Signals from CVEs in this product scope (30 CVEs).
30 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-6367HIGH Cisco Adaptive Security Appliance (ASA) Software before 8.4(1) on ASA 5500, ASA 5500-X, PIX, and FWSM devices allows local users to gain privileges via invalid CLI commands, aka Bu | Aug 18, 2016 | 7.8 | 77 | YES | YES |
CVE-2006-0515HIGH Cisco PIX/ASA 7.1.x before 7.1(2) and 7.0.x before 7.0(5), PIX 6.3.x before 6.3.5(112), and FWSM 2.3.x before 2.3(4) and 3.x before 3.1(7), when used with Websense/N2H2, allows rem | May 9, 2006 | 7.5 | 32 | NO | YES |
CVE-2004-0079HIGH The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake t | Nov 23, 2004 | 7.5 | 29 | NO | NO |
CVE-2012-0356HIGH Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 through 7.2 before 7.2(5. | Mar 15, 2012 | 7.8 | 24 | NO | NO |
CVE-2011-0394HIGH Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 before 7.0(8.11), 7.1 and 7.2 before 7.2(5.1), 8.0 before 8.0(5.19), 8.1 before 8.1(2.47), 8.2 before | Feb 25, 2011 | 7.8 | 23 | NO | NO |
CVE-2010-2820HIGH Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10. | Aug 9, 2010 | 7.8 | 23 | NO | NO |
CVE-2010-2819HIGH Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10. | Aug 9, 2010 | 7.8 | 23 | NO | NO |
CVE-2010-2818HIGH Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10. | Aug 9, 2010 | 7.8 | 23 | NO | NO |
CVE-2007-0968HIGH Unspecified vulnerability in Cisco Firewall Services Module (FWSM) before 2.3(4.7) and 3.x before 3.1(3.1) causes the access control entries (ACE) in an ACL to be improperly evalua | Feb 16, 2007 | 9.0 | 23 | NO | NO |
CVE-2004-0112MEDIUM The SSL/TLS handshaking code in OpenSSL 0.9.7a, 0.9.7b, and 0.9.7c, when using Kerberos ciphersuites, does not properly check the length of Kerberos tickets during a handshake, whi | Nov 23, 2004 | 5.0 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (30 CVEs).
CISA KEV
1 CVE
3.3% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
6.7% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (30 CVEs).
Media Mentions
Signals from CVEs in this product scope (30 CVEs).
Top CNAs Publishing CVEs For Firewall Services Module
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.0\(6\) | 1 | 7.8 | 2.0% | 0 | 0 |
| 4.0\(4\) | 2 | 7.8 | 2.4% | 0 | 0 |
| 4.0 | 2 | 7.8 | 2.4% | 0 | 0 |
| 3.2\(3\) | 2 | 7.8 | 2.4% | 0 | 0 |
| 3.2\(2\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 3.2\(1\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 3.2 | 1 | 7.8 | 2.9% | 0 | 0 |
| 3.1\(6\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 3.1\(5\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 3.1 | 9 | 7.6 | 2.7% | 0 | 1 |
| 2.3\(1\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 2.3 | 4 | 8.0 | 4.0% | 0 | 1 |
| 2.2\(1\) | 1 | 7.8 | 2.9% | 0 | 0 |
| 2.2 | 1 | 7.8 | 2.9% | 0 | 0 |
| 2.1_\(0.208\) | 5 | 6.1 | 7.0% | 0 | 0 |
| 1.1_\(3.005\) | 4 | 5.6 | 8.1% | 0 | 0 |
| 1.1.3 | 4 | 5.6 | 8.1% | 0 | 0 |
| 1.1.2 | 6 | 5.4 | 5.8% | 0 | 0 |