Skip to main content

Cisco ASA Arbitrary Command Execution Vulnerability

Last Update Date: 18 Nov 2016 10:28 Release Date: 18 Nov 2016 3568 Views

RISK: Medium Risk

TYPE: Servers - Network Management

TYPE: Network Management

A vulnerability was identified in Cisco ASA. A remote user can execute arbitrary XML commands on the target system.


Impact

  • Remote Code Execution

System / Technologies affected

  • Version: 5500-X; 9.1(6.10)

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 96.2(0.95), 97.1(6.30), 97.1(12.7), 97.1(0.55), 100.8(40.129), 100.15(0.137), 100.11(0.75)

 


Vulnerability Identifier


Source


Related Link