Lucene search

K
cveCiscoCVE-2015-0760
HistoryJun 04, 2015 - 10:59 a.m.

CVE-2015-0760

2015-06-0410:59:00
CWE-264
CWE-20
cisco
web.nvd.nist.gov
33
2
cisco
asa software
ikev1
vulnerability
xauth
authentication
bug id
cscus47259
cve-2015-0760
nvd

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

47.5%

The IKEv1 implementation in Cisco ASA Software 7.x, 8.0.x, 8.1.x, and 8.2.x before 8.2.2.13 allows remote authenticated users to bypass XAUTH authentication via crafted IKEv1 packets, aka Bug ID CSCus47259.

Affected configurations

Nvd
Node
ciscoadaptive_security_appliance_softwareRange7.08.2.2.13
VendorProductVersionCPE
ciscoadaptive_security_appliance_software*cpe:2.3:a:cisco:adaptive_security_appliance_software:*:*:*:*:*:*:*:*

Social References

More

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

6.7

Confidence

Low

EPSS

0.001

Percentile

47.5%

Related for CVE-2015-0760