4
CVSSv2

CVE-2014-2151

Published: 18/06/2014 Updated: 02/06/2022
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

The WebVPN portal in Cisco Adaptive Security Appliance (ASA) Software 8.4(.7.15) and previous versions allows remote authenticated users to obtain sensitive information via a crafted JavaScript file, aka Bug ID CSCui04520.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco adaptive security appliance software

Vendor Advisories

A vulnerability in the WebVPN portal of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, remote attacker to view sensitive information from the affected system The vulnerability is due to improper input validation in the WebVPN portal An attacker could exploit this vulnerability by providing a crafted JavaScript file to an a ...