Security Advisory

CVE-2014-0739

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-02-22 21:00:00
Last updated 2024-08-06 09:27:19
Assigner cisco
CVSS score not scored
State PUBLISHED

Description

Race condition in the Phone Proxy component in Cisco Adaptive Security Appliance (ASA) Software 9.1(.3) and earlier allows remote attackers to bypass sec_db authentication and provide certain pass-through services to untrusted devices via a crafted configuration-file TFTP request, aka Bug ID CSCuj66766.