VendorsCiscoasa_5525-xall versions
Vulnerabilities

Cisco ASA 5525-X

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

51CVEs
CVE-2018-0242
A vulnerability in the WebVPN web-based management interface of Cisco Adaptive Security Appliance could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvg33985.
Published 2018-04-19 · Modified
6.1EPSS 0.018
CVE-2019-12695
Cisco Adaptive Security Appliance and Firepower Threat Defense Software WebVPN Cross-Site Scripting Vulnerability
Published 2019-10-02 · Modified
6.1EPSS 0.011
CVE-2019-1705
Cisco Adaptive Security Appliance Software VPN Denial of Service Vulnerability
Published 2019-05-03 · Modified
5.9EPSS 0.020
CVE-2020-3188
Cisco Firepower Threat Defense Software Management Interface Denial of Service Vulnerability
Published 2020-05-06 · Modified
5.3EPSS 0.017
CVE-2020-3186
Cisco Firepower Threat Defense Software Management Access List Bypass Vulnerability
Published 2020-05-06 · Modified
5.3EPSS 0.014
CVE-2021-34790
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Application Level Gateway Bypass Vulnerabilities
Published 2021-10-27 · Modified
5.3EPSS 0.011
CVE-2021-34791
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Application Level Gateway Bypass Vulnerabilities
Published 2021-10-27 · Modified
5.3EPSS 0.011
CVE-2021-34787
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Identity-Based Rule Bypass Vulnerability
Published 2021-10-27 · Modified
5.3EPSS 0.010
CVE-2021-34794
Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software SNMP Access Control Vulnerability
Published 2021-10-27 · Modified
5.3EPSS 0.009
CVE-2014-3394
The Smart Call Home (SCH) implementation in Cisco ASA Software 8.2 before 8.2(5.50), 8.4 before 8.4(7.15), 8.6 before 8.6(1.14), 8.7 before 8.7(1.13), 9.0 before 9.0(4.8), and 9.1 before 9.1(5.1) allows remote attackers to bypass certificate validation via an arbitrary VeriSign certificate, aka Bug ID CSCun10916.
Published 2014-10-10 · Modified
5.0EPSS 0.010
CVE-2019-1701
Cisco Adaptive Security Appliance and Firepower Threat Defense Software WebVPN Cross-Site Scripting Vulnerabilities
Published 2019-05-03 · Modified
4.8EPSS 0.009
← Prev2 / 2