Multiple vulnerabilities in the smart tunnel functionality of Cisco Adaptive Security Appliance (ASA) could allow an authenticated, local attacker to elevate privileges to the root user or load a malicious library file while the tunnel is being established. For more information about these vulnerabilities, see the Details section of this security advisory.
References
Configurations
History
21 Nov 2024, 04:37
Type | Values Removed | Values Added |
---|---|---|
References | () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190807-asa-multiĀ - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 6.7 |
Information
Published : 2019-08-07 22:15
Updated : 2024-11-21 04:37
NVD link : CVE-2019-1945
Mitre link : CVE-2019-1945
CVE.ORG link : CVE-2019-1945
JSON object : View
Products Affected
cisco
- adaptive_security_appliance_software
CWE
CWE-20
Improper Input Validation