Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hww-m544-6v27

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Mobile User Security (MUS) service on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) does not properly authenticate HTTP requests from a Web Security appliance (WSA), which might allow remote attackers to obtain sensitive information via a HEAD request, aka Bug ID CSCte53635.

The Mobile User Security (MUS) service on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) does not properly authenticate HTTP requests from a Web Security appliance (WSA), which might allow remote attackers to obtain sensitive information via a HEAD request, aka Bug ID CSCte53635.

EPSS

Процентиль: 65%
0.00496
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
около 15 лет назад

The Mobile User Security (MUS) service on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) does not properly authenticate HTTP requests from a Web Security appliance (WSA), which might allow remote attackers to obtain sensitive information via a HEAD request, aka Bug ID CSCte53635.

EPSS

Процентиль: 65%
0.00496
Низкий

Дефекты

CWE-287