Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
BID:65707
Info
Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
| Bugtraq ID: | 65707 |
| Class: | Race Condition Error |
| CVE: |
CVE-2014-0739 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 20 2014 12:00AM |
| Updated: | Feb 25 2014 01:12AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
Cisco Adaptive Security Appliance (ASA) is prone to a security-bypass vulnerability.
Successfully exploiting this issue will allow attackers to bypass security restrictions and pass traffic from an untrusted phone through the ASA.
This issue is tracked by Cisco Bug ID's CSCuj66766.
Cisco Adaptive Security Appliance (ASA) is prone to a security-bypass vulnerability.
Successfully exploiting this issue will allow attackers to bypass security restrictions and pass traffic from an untrusted phone through the ASA.
This issue is tracked by Cisco Bug ID's CSCuj66766.
Exploit / POC
Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.
Solution / Fix
Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
Cisco Adaptive Security Appliance Phone Proxy sec_db Security Bypass Vulnerability
References:
References: