CVE-2015-0578
- EPSS 0.6%
- Veröffentlicht 14.01.2015 19:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cisco Adaptive Security Appliance (ASA) Software, when a DHCPv6 relay is configured, allows remote attackers to cause a denial of service (device reload) via crafted DHCP packets on the local network, aka Bug ID CSCur45455.
CVE-2014-3410
- EPSS 0.38%
- Veröffentlicht 20.12.2014 00:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The syslog-management subsystem in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to obtain an administrator password by waiting for an administrator to copy a file, and then (1) sniffing the network for a syslog message or ...
CVE-2014-8012
- EPSS 0.3%
- Veröffentlicht 18.12.2014 16:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the WebVPN Portal Login page in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to inject arbitrary web script or HTML via crafted attributes in a cookie, aka Bug ID CSCuh24695.
CVE-2014-3390
- EPSS 0.32%
- Veröffentlicht 10.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Virtual Network Management Center (VNMC) policy implementation in Cisco ASA Software 8.7 before 8.7(1.14), 9.2 before 9.2(2.8), and 9.3 before 9.3(1.1) allows local users to obtain Linux root access by leveraging administrative privileges and exe...
CVE-2014-3391
- EPSS 0.1%
- Veröffentlicht 10.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Untrusted search path vulnerability in Cisco ASA Software 8.x before 8.4(3), 8.5, and 8.7 before 8.7(1.13) allows local users to gain privileges by placing a Trojan horse library file in external memory, leading to library use after device reload bec...
CVE-2014-3392
- EPSS 0.49%
- Veröffentlicht 10.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Clientless SSL VPN portal in Cisco ASA Software 8.2 before 8.2(5.51), 8.3 before 8.3(2.42), 8.4 before 8.4(7.23), 8.6 before 8.6(1.15), 9.0 before 9.0(4.24), 9.1 before 9.1(5.12), 9.2 before 9.2(2.8), and 9.3 before 9.3(1.1) allows remote attacke...
CVE-2014-3393
- EPSS 0.79%
- Veröffentlicht 10.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Clientless SSL VPN portal customization framework in Cisco ASA Software 8.2 before 8.2(5.51), 8.3 before 8.3(2.42), 8.4 before 8.4(7.23), 8.6 before 8.6(1.14), 9.0 before 9.0(4.24), 9.1 before 9.1(5.12), and 9.2 before 9.2(2.4) does not properly ...
- EPSS 0.09%
- Veröffentlicht 10.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Smart Call Home (SCH) implementation in Cisco ASA Software 8.2 before 8.2(5.50), 8.4 before 8.4(7.15), 8.6 before 8.6(1.14), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to bypass certificate validati...
- EPSS 0.9%
- Veröffentlicht 05.10.2014 01:55:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
The SSL VPN implementation in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to obtain potentially sensitive software-version information by reading the verbose response data that is provided for a request to an unspecified ...
CVE-2014-2181
- EPSS 0.31%
- Veröffentlicht 07.05.2014 10:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cisco Adaptive Security Appliance (ASA) Software allows remote authenticated users to read files by sending a crafted URL to the HTTP server, as demonstrated by reading the running configuration, aka Bug ID CSCun78551.