imPC@ndo IT

Tracker / CVE-2010-4690

CVE-2010-4690

Medium 5.0

The Mobile User Security (MUS) service on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) does not properly authenticate HTTP requests from a Web Security appliance (WSA), which might allow remote attackers to obtain sensitive information via a HEAD request, aka Bug ID CSCte53635.

Affected products and versions

cisco 5500_series_adaptive_security_appliance
cisco adaptive_security_appliance_software
cisco adaptive_security_appliance_software · … → 8.3\(1\)
cisco asa_5500

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References