Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

2024/11 : Internal-CISA - Cisco Adaptive Security Appliance (ASA) - CVE-2014-2120 #156

Closed
ums91 opened this issue Nov 13, 2024 · 1 comment

Comments

@ums91
Copy link
Owner

ums91 commented Nov 13, 2024

Summary

Confirm if Cisco Adaptive Security Appliance (ASA) vulnerability below is applicable to any systems.

Reference

From CISA Known Exploited Vulnerabilities Catalog: https://www.cisa.gov/known-exploited-vulnerabilities-catalog

CVE-2014-2120

Severity

MEDIUM - CVSS v2 - (AV:N/AC:M/Au:N/C:N/I:P/A:N)

Detailed description of the vulnerability

Cross-site scripting (XSS) vulnerability in the WebVPN login page in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCun19025.

Reporter

CISA

@ums91
Copy link
Owner Author

ums91 commented Nov 13, 2024

This vulnerability is not applicable to any systems.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant