VendorsCiscoadaptive_security_appliance_software8.2\(3.9\)
Vulnerabilities

Cisco Adaptive Security Appliance 8.2\(3.9\)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

43CVEs
CVE-2013-5510
The remote-access VPN implementation in Cisco Adaptive Security Appliance (ASA) Software 7.x before 7.2(5.12), 8.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(6), 8.6.x before 8.6(1.12), 9.0.x before 9.0(3.1), and 9.1.x before 9.1(2.5), when an override-account-disable option is enabled, does not properly parse AAA LDAP responses, which allows remote attackers to bypass authentication via a VPN connection attempt, aka Bug ID CSCug83401.
Published 2013-10-13 · Modified
4.3EPSS 0.012
CVE-2011-3309
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 process IKE requests despite a vpnclient mode configuration, which allows remote attackers to obtain potentially sensitive information by reading IKE responder traffic, aka Bug ID CSCtt07749.
Published 2012-05-02 · Modified
4.3EPSS 0.011
CVE-2012-2474
Memory leak on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 through 8.4 allows remote authenticated users to cause a denial of service (memory consumption and blank response page) by using the clientless WebVPN feature, aka Bug ID CSCth34278.
Published 2012-08-06 · Modified
4.0EPSS 0.014
← Prev2 / 2