The WebVPN portal in Cisco Adaptive Security Appliance (ASA) Software 8.4(.7.15) and earlier allows remote authenticated users to obtain sensitive information via a crafted JavaScript file, aka Bug ID CSCui04520.
Link | Tags |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-2151 | vendor advisory broken link |
http://www.securitytracker.com/id/1030445 | vdb entry third party advisory broken link |
http://www.securityfocus.com/bid/68063 | vdb entry third party advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=34627 | vendor advisory |