Cisco Alerts Users About Exploitation of Antique ASA WebVPN Flaw

On Monday, Cisco revised a notification to alert clients about ongoing exploitation of a ten-year-old vulnerability affecting its Adaptive Security Appliance (ASA).
The security loophole, identified as CVE-2014-2120 (CVSS score: 4.

On Monday, Cisco revised a notification to alert clients about ongoing exploitation of a ten-year-old vulnerability affecting its Adaptive Security Appliance (ASA).
The security loophole, identified as CVE-2014-2120 (CVSS score: 4.3), pertains to a scenario of inadequate input validation in the ASA’s WebVPN login interface, potentially enabling an unauthorized, remote hacker to execute a cross-site scripting (XSS) assault

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.