First published: Wed Oct 23 2024(Updated: )
Multiple vulnerabilities in the VPN web client services feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | ||
Cisco Firepower Threat Defense |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-asaftd-xss-yjj7ZjVq is categorized as high due to the potential for remote attackers to exploit the cross-site scripting vulnerabilities.
The cisco-sa-asaftd-xss-yjj7ZjVq vulnerability affects Cisco Adaptive Security Appliance and Cisco Firepower Threat Defense Software.
To fix cisco-sa-asaftd-xss-yjj7ZjVq, upgrade affected Cisco Adaptive Security Appliance and Firepower Threat Defense products to a patched version provided by Cisco.
Yes, an unauthenticated remote attacker can exploit the vulnerabilities described in cisco-sa-asaftd-xss-yjj7ZjVq.
The impact of cisco-sa-asaftd-xss-yjj7ZjVq includes the potential for attackers to execute malicious scripts in the context of a user's browser session.