|
222581
|
7.5 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_device_manager firepower_threat_defense
|
A vulnerability in the Deterministic Random Bit Generator (DRBG), also known as Pseudorandom Number Generator (PRNG), used in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre…
|
CWE-332
Insufficient Entropy in PRNG
|
CVE-2019-1715
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222582
|
8.6 |
HIGH
Network
|
cisco
|
firepower_threat_defense adaptive_security_appliance_software
|
A vulnerability in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientless SSL VPN (WebVPN) and AnyConnect Remote Access VPN in Cisco Adaptive Security…
|
NVD-CWE-Other
|
CVE-2019-1714
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222583
|
8.8 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_software
|
A vulnerability in the web-based management interface of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF…
|
CWE-352
Origin Validation Error
|
CVE-2019-1713
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222584
|
8.6 |
HIGH
Network
|
cisco
|
firepower_threat_defense adaptive_security_appliance_software
|
A vulnerability in the Internet Key Exchange Version 2 Mobility and Multihoming Protocol (MOBIKE) feature for the Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2019-1708
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222585
|
8.6 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_software
|
A vulnerability in the software cryptography module of the Cisco Adaptive Security Virtual Appliance (ASAv) and Firepower 2100 Series running Cisco Adaptive Security Appliance (ASA) Software could al…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2019-1706
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222586
|
5.9 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance_software
|
A vulnerability in the remote access VPN session manager of Cisco Adaptive Security Appliance (ASA) Software could allow a unauthenticated, remote attacker to cause a denial of service (DoS) conditio…
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2019-1705
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222587
|
8.6 |
HIGH
Network
|
cisco
|
firepower_threat_defense
|
A vulnerability in the internal packet-processing functionality of Cisco Firepower Threat Defense (FTD) Software for the Cisco Firepower 2100 Series could allow an unauthenticated, remote attacker to…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2019-1703
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222588
|
4.8 |
MEDIUM
Network
|
cisco
|
adaptive_security_appliance_software firepower_threat_defense
|
Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to c…
|
CWE-79
Cross-site Scripting
|
CVE-2019-1701
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222589
|
7.5 |
HIGH
Network
|
cisco
|
adaptive_security_appliance_software firepower_threat_defense
|
A vulnerability in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could…
|
CWE-20
Improper Input Validation
|
CVE-2019-1697
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222590
|
6.5 |
MEDIUM
Adjacent
|
cisco
|
adaptive_security_appliance_software firepower_threat_defense
|
A vulnerability in the detection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to send…
|
NVD-CWE-Other
|
CVE-2019-1695
|
2024-11-21 13:37 |
2019-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|