PULSE
LIVE20signals / 24h
FEED
ransomkrybit reclama a hisstw.com · TW · Not Foundransomkrybit reclama a labindia.com · IN · Healthcareransomkrybit reclama a lhyk.com.sg · SG · Otherransomqilin reclama a Wanted · NL · Not Foundransomsilentransomgroup reclama a R...er · Not Foundransomsilentransomgroup reclama a R... D... · Not Foundransomspacebears reclama a Basso Fedele & Figli S.r.l. (Olio Basso) / Villa Raiano · IT · Agriculture and Food Productionransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Foundransomkrybit reclama a hisstw.com · TW · Not Foundransomkrybit reclama a labindia.com · IN · Healthcareransomkrybit reclama a lhyk.com.sg · SG · Otherransomqilin reclama a Wanted · NL · Not Foundransomsilentransomgroup reclama a R...er · Not Foundransomsilentransomgroup reclama a R... D... · Not Foundransomspacebears reclama a Basso Fedele & Figli S.r.l. (Olio Basso) / Villa Raiano · IT · Agriculture and Food Productionransomgenesis reclama a **E*** · US · Not Foundransomorova reclama a Ganzhou Xinye Craft Co., Ltd. · HK · Manufacturingransompanzer reclama a Xpress Tech · Technologyransomqilin reclama a G.M.A. GRANDI MARCHE AUTOMOBILI - S.R.L · IT · Transportationransomqilin reclama a Crown Group · PK · Otherransomdragonforce reclama a QPC Global · GB · Otherransominterlock reclama a AngMar Companies · Not Found
← All CVEs
CVE WatchAug 11, 2026

CVE-2018-15454

A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Fir

CVSS

8.6

High

EPSS

4.4%

p90

KEV

Exploit Today

27

0-100

Published: Nov 1, 2018 · Last modified: Aug 11, 2026 · CWE-20

EPSS · 30d
4.4%EPSS · 30 days4.4%
2026-07-142026-08-11
Technical description

A vulnerability in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload or trigger high CPU, resulting in a denial of service (DoS) condition. The vulnerability is due to improper handling of SIP traffic. An attacker could exploit this vulnerability by sending SIP requests designed to specifically trigger this issue at a high rate across an affected device. Software updates that address this vulnerability are not yet available.

Official references
Related CVEs
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-20901
0Improper input validation for some Intel(R) Xeon(R) processors within firmware may allow an escalation of privilege. Startup code and smm adversary with a privileged user combined with a high complexity attack may enable data alteration. This result may potentially occur via local access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (none) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (high) and availability (none) impacts.8h
CVE-2026-713904.0 MED
0CAI Content Credentials is affected by an Improper Input Validation vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized limited write access. Exploitation of this issue does not require user interaction.19h
CVE-2026-703255.5 MED
0Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.15h
CVE-2026-703235.5 MED
0Improper input validation in Microsoft Office allows an unauthorized attacker to disclose information locally.18h
CVE-2026-703225.5 MED
0Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.18h
CVE-2026-703205.5 MED
0Improper input validation in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally.15h