CVE-2013-1152
- EPSS 0.71%
- Published 11.04.2013 10:55:01
- Last modified 11.04.2025 00:51:21
Cisco Adaptive Security Appliances (ASA) devices with software 9.0 before 9.0(1.2) allow remote attackers to cause a denial of service (device reload) via a crafted field in a DNS message, aka Bug ID CSCuc80080.
- EPSS 0.55%
- Published 25.02.2013 20:55:01
- Last modified 11.04.2025 00:51:21
The NAT process on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (connections-table memory consumption) via crafted packets, aka Bug ID CSCue46386.
CVE-2012-6395
- EPSS 0.99%
- Published 18.01.2013 21:55:01
- Last modified 11.04.2025 00:51:21
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.4 do not properly validate unspecified input related to UNC share pathnames, which allows remote authenticated users to cause a denial of service (device crash) via unknown vectors, aka...
CVE-2012-5717
- EPSS 0.34%
- Published 18.01.2013 21:55:00
- Last modified 11.04.2025 00:51:21
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device crash) by establishing multiple sessions, aka Bug ID C...
CVE-2009-2631
- EPSS 0.96%
- Published 04.12.2009 11:30:00
- Last modified 16.06.2025 21:15:22
Multiple clientless SSL VPN products that run in web browsers, including Stonesoft StoneGate; Cisco ASA; SonicWALL E-Class SSL VPN and SonicWALL SSL VPN; SafeNet SecureWire Access Gateway; Juniper Networks Secure Access; Nortel CallPilot; Citrix Acce...
- EPSS 3.07%
- Published 25.06.2009 17:30:00
- Last modified 09.04.2025 00:30:58
WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 does not properly distinguish its own login screen from the login screens it produces for third-party (1) FTP and (2) CIFS servers, which makes it ea...
CVE-2009-1202
- EPSS 0.32%
- Published 25.06.2009 17:30:00
- Last modified 09.04.2025 00:30:58
WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 allows remote attackers to bypass certain protection mechanisms involving URL rewriting and HTML rewriting, and conduct cross-site scripting (XSS) at...
CVE-2009-1201
- EPSS 4.48%
- Published 25.06.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Eval injection vulnerability in the csco_wrap_js function in /+CSCOL+/cte.js in WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 allows remote attackers to bypass a DOM wrapper and conduct cross-sit...
CVE-2009-1220
- EPSS 17.04%
- Published 01.04.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in +webvpn+/index.html in WebVPN on the Cisco Adaptive Security Appliances (ASA) 5520 with software 7.2(4)30 and earlier 7.2 versions including 7.2(2)22, and 8.0(4)28 and earlier 8.0 versions, when clientless ...
CVE-2008-2056
- EPSS 1.92%
- Published 04.06.2008 21:32:00
- Last modified 09.04.2025 00:30:58
Cisco Adaptive Security Appliance (ASA) and Cisco PIX security appliance 8.0.x before 8.0(3)9 and 8.1.x before 8.1(1)1 allows remote attackers to cause a denial of service (device reload) via a crafted Transport Layer Security (TLS) packet to the dev...