Unrated severityNVD Advisory· Published Oct 19, 2014· Updated May 6, 2026
CVE-2014-3381
CVE-2014-3381
Description
The ZIP inspection engine in Cisco AsyncOS 8.5 and earlier on the Cisco Email Security Appliance (ESA) does not properly analyze ZIP archives, which allows remote attackers to bypass malware filtering via a crafted archive, aka Bug ID CSCup07934.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3381nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
News mentions
0No linked articles in our index yet.