Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
BID:108185
Info
Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
| Bugtraq ID: | 108185 |
| Class: | Design Error |
| CVE: |
CVE-2019-1714 |
| Remote: | Yes |
| Local: | No |
| Published: | May 01 2019 12:00AM |
| Updated: | May 01 2019 12:00AM |
| Credit: | Cisco. |
| Vulnerable: |
Cisco Firepower Threat Defense Virtual (FTDv) 0 Cisco Firepower Threat Defense Software 6.3 Cisco Firepower Threat Defense Software 6.2.3 Cisco Firepower Threat Defense Software 6.2.2 Cisco Firepower Threat Defense Software 6.2.1 Cisco Firepower 9300 Security Appliances 0 Cisco Firepower 4100 Series 0 Cisco Firepower 2100 Series 0 Cisco ASA Services Module for Cisco Catalyst 6500 Series Switches 0 Cisco ASA Services Module for Cisco 7600 Series Routers 0 Cisco ASA 5500-X Series Firewalls 0 Cisco Adaptive Security Virtual Appliance (ASAv) 0 Cisco Adaptive Security Appliance (ASA) Software 9.9 Cisco Adaptive Security Appliance (ASA) Software 9.8 Cisco Adaptive Security Appliance (ASA) Software 9.7 Cisco Adaptive Security Appliance (ASA) Software 9.10 Cisco 3000 Series Industrial Security Appliances (ISAs) 0 |
| Not Vulnerable: |
Cisco Firepower Threat Defense Software 6.3.0.3 Cisco Firepower Threat Defense Software 6.2.3.12 Cisco Adaptive Security Appliance (ASA) Software 9.8.4 Cisco Adaptive Security Appliance (ASA) Software 9.9.2.50 Cisco Adaptive Security Appliance (ASA) Software 9.10.1.17 |
Discussion
Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
Cisco Adaptive Security Appliance and Firepower Threat Defense Software are prone to an authentication-bypass vulnerability.
Successfully exploiting this issue will allow attackers to bypass authentication mechanism and gain unauthorized access to the affected device.
This issue is tracked by Cisco Bug ID CSCvn72570.
Cisco Adaptive Security Appliance and Firepower Threat Defense Software are prone to an authentication-bypass vulnerability.
Successfully exploiting this issue will allow attackers to bypass authentication mechanism and gain unauthorized access to the affected device.
This issue is tracked by Cisco Bug ID CSCvn72570.
Exploit / POC
Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Multiple Cisco Products CVE-2019-1714 Authentication Bypass Vulnerability
References:
References: