imPC@ndo IT

Tracker / CVE-2010-4680

CVE-2010-4680

High 9.0

The WebVPN implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.2(3) permits the viewing of CIFS shares even when CIFS file browsing has been disabled, which allows remote authenticated users to bypass intended access restrictions via CIFS requests, aka Bug ID CSCsz80777.

Affected products and versions

cisco 5500_series_adaptive_security_appliance
cisco adaptive_security_appliance_software
cisco adaptive_security_appliance_software · … → 8.2\(2\)
cisco asa_5500

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References