First published: Fri Oct 30 2015(Updated: )
The web-based GUI in Cisco Adaptive Security Appliance (ASA) CX Context-Aware Security 9.3(4.1.11) allows remote authenticated users to bypass intended access restrictions and obtain sensitive user information via an unspecified HTTP request, aka Bug ID CSCuv74105.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASA CX Context-Aware Security | =9.3.4.1.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6344 has been assigned a moderate severity rating due to the potential for unauthorized access to sensitive user information.
To fix CVE-2015-6344, upgrade to a fixed version of Cisco ASA CX Context-Aware Security that addresses this vulnerability.
CVE-2015-6344 affects remote authenticated users of Cisco ASA CX Context-Aware Security version 9.3(4.1.11).
CVE-2015-6344 is a security vulnerability that allows bypassing access restrictions through an unspecified HTTP request.
Yes, CVE-2015-6344 can lead to data breaches by allowing unauthorized access to sensitive user information.