Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhmg-fcjg-c5rx

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Race condition in the Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass sec_db authentication and provide certain pass-through services to untrusted devices via a crafted configuration-file TFTP request, aka Bug ID CSCuj66766.

Race condition in the Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass sec_db authentication and provide certain pass-through services to untrusted devices via a crafted configuration-file TFTP request, aka Bug ID CSCuj66766.

EPSS

Процентиль: 40%
0.00184
Низкий

Дефекты

CWE-287

Связанные уязвимости

nvd
почти 12 лет назад

Race condition in the Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass sec_db authentication and provide certain pass-through services to untrusted devices via a crafted configuration-file TFTP request, aka Bug ID CSCuj66766.

EPSS

Процентиль: 40%
0.00184
Низкий

Дефекты

CWE-287