5
CVSSv2

CVE-2014-3394

Published: 10/10/2014 Updated: 15/08/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Smart Call Home (SCH) implementation in Cisco ASA Software 8.2 prior to 8.2(5.50), 8.4 prior to 8.4(7.15), 8.6 prior to 8.6(1.14), 8.7 prior to 8.7(1.13), 9.0 prior to 9.0(4.8), and 9.1 prior to 9.1(5.1) allows remote malicious users to bypass certificate validation via an arbitrary VeriSign certificate, aka Bug ID CSCun10916.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco adaptive_security_virtual_appliance -

cisco adaptive_security_appliance_software 8.2.0.45

cisco adaptive_security_appliance_software 8.2.1

cisco adaptive_security_appliance_software 8.2.1.1

cisco adaptive_security_appliance_software 8.2.2

cisco adaptive_security_appliance_software 8.2.2.10

cisco adaptive_security_appliance_software 8.2.2.12

cisco adaptive_security_appliance_software 8.2.2.16

cisco adaptive_security_appliance_software 8.2.2.17

cisco adaptive_security_appliance_software 8.2.3

cisco adaptive_security_appliance_software 8.2.4

cisco adaptive_security_appliance_software 8.2.4.1

cisco adaptive_security_appliance_software 8.2.4.4

cisco adaptive_security_appliance_software 8.2.5

cisco adaptive_security_appliance_software 8.2.5.13

cisco adaptive_security_appliance_software 8.2.5.22

cisco adaptive_security_appliance_software 8.2.5.26

cisco adaptive_security_appliance_software 8.2.5.33

cisco adaptive_security_appliance_software 8.2.5.40

cisco adaptive_security_appliance_software 8.2.5.41

cisco adaptive_security_appliance_software 8.2.5.46

cisco adaptive_security_appliance_software 8.2.5.48

cisco adaptive_security_appliance_software 8.4.1

cisco adaptive_security_appliance_software 8.4.1.3

cisco adaptive_security_appliance_software 8.4.1.11

cisco adaptive_security_appliance_software 8.4.2

cisco adaptive_security_appliance_software 8.4.2.1

cisco adaptive_security_appliance_software 8.4.2.8

cisco adaptive_security_appliance_software 8.4.3

cisco adaptive_security_appliance_software 8.4.3.8

cisco adaptive_security_appliance_software 8.4.3.9

cisco adaptive_security_appliance_software 8.4.4

cisco adaptive_security_appliance_software 8.4.4.1

cisco adaptive_security_appliance_software 8.4.4.3

cisco adaptive_security_appliance_software 8.4.4.5

cisco adaptive_security_appliance_software 8.4.4.9

cisco adaptive_security_appliance_software 8.4.5

cisco adaptive_security_appliance_software 8.4.5.6

cisco adaptive_security_appliance_software 8.4.6

cisco adaptive_security_appliance_software 8.4.7

cisco adaptive_security_appliance_software 8.4.7.3

cisco adaptive_security_appliance_software 8.6.1

cisco adaptive_security_appliance_software 8.6.1.1

cisco adaptive_security_appliance_software 8.6.1.2

cisco adaptive_security_appliance_software 8.6.1.5

cisco adaptive_security_appliance_software 8.6.1.10

cisco adaptive_security_appliance_software 8.6.1.12

cisco adaptive_security_appliance_software 8.6.1.13

cisco adaptive_security_appliance_software 8.7.1

cisco adaptive_security_appliance_software 8.7.1.3

cisco adaptive_security_appliance_software 8.7.1.4

cisco adaptive_security_appliance_software 8.7.1.7

cisco adaptive_security_appliance_software 8.7.1.11

cisco adaptive_security_appliance_software 9.0.1

cisco adaptive_security_appliance_software 9.0.2

cisco adaptive_security_appliance_software 9.0.2.10

cisco adaptive_security_appliance_software 9.0.3

cisco adaptive_security_appliance_software 9.0.3.6

cisco adaptive_security_appliance_software 9.0.3.8

cisco adaptive_security_appliance_software 9.0.4

cisco adaptive_security_appliance_software 9.0.4.1

cisco adaptive_security_appliance_software 9.0.4.5

cisco adaptive_security_appliance_software 9.0.4.7

cisco adaptive_security_appliance_software 9.1.1

cisco adaptive_security_appliance_software 9.1.1.4

cisco adaptive_security_appliance_software 9.1.2

cisco adaptive_security_appliance_software 9.1.2.8

cisco adaptive_security_appliance_software 9.1.3

cisco adaptive_security_appliance_software 9.1.3.2

cisco adaptive_security_appliance_software 9.1.4

cisco adaptive_security_appliance_software 9.1.5

Vendor Advisories

A vulnerability in the Smart Call Home (SCH) feature of Cisco ASA Software could allow an unauthenticated, remote attacker to bypass digital certificate validation if any feature that uses digital certificates is configured on the affected system The vulnerability exists because when SCH is configured, a trustpoint, including a VeriSign certifica ...