216.73.217.22

CVE-2014-2120

· Published 19/03/2014 02:15 · Modified 22/04/2026 23:53 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2014-2120

Essential information

Published
19/03/2014 02:15
Modified
22/04/2026 23:53
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
4.3 (v2) 6.1 MEDIUM (v3.1)
CISA KEV
Yes
CWE
CWE-79
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CVSS metrics

Description

Cisco Adaptive Security Appliance (ASA) contains a cross-site scripting (XSS) vulnerability in the WebVPN login page. This vulnerability allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter.

NVD status

NVD
View on NVD