Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2012-0358

Overview

Vulnerability Score 9.3 9.3
CVE Id CVE-2012-0358
Last Modified 29 Jan 2013 11:46:40
Published 14 Mar 2012 08:55:01
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2012-0358

Summary

Buffer overflow in the Cisco Port Forwarder ActiveX control in cscopf.ocx, as distributed through the Clientless VPN feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 through 7.2 before 7.2(5.6), 8.0 before 8.0(5.26), 8.1 before 8.1(2.53), 8.2 before 8.2(5.18), 8.3 before 8.3(2.28), 8.2 before 8.4(2.16), and 8.6 before 8.6(1.1), allows remote attackers to execute arbitrary code via unspecified vectors, aka Bug ID CSCtr00165.

Vulnerable Systems

Application

  • Cisco Adaptive Security Appliance Software 7.0

  • Cisco Adaptive Security Appliance Software 7.0%280%29

  • Cisco Adaptive Security Appliance Software 7.0%281%29

  • Cisco Adaptive Security Appliance Software 7.0%282%29

  • Cisco Adaptive Security Appliance Software 7.0%284%29

  • Cisco Adaptive Security Appliance Software 7.0%285%29

  • Cisco Adaptive Security Appliance Software 7.0%285.2%29

  • Cisco Adaptive Security Appliance Software 7.0%286%29

  • Cisco Adaptive Security Appliance Software 7.0%286.7%29

  • Cisco Adaptive Security Appliance Software 7.0%287%29

  • Cisco Adaptive Security Appliance Software 7.0%288%29

  • Cisco Adaptive Security Appliance Software 7.0.1

  • Cisco Adaptive Security Appliance Software 7.0.1.4

  • Cisco Adaptive Security Appliance Software 7.0.2

  • Cisco Adaptive Security Appliance Software 7.0.4

  • Cisco Adaptive Security Appliance Software 7.0.4.3

  • Cisco Adaptive Security Appliance Software 7.0.5

  • Cisco Adaptive Security Appliance Software 7.0.6

  • Cisco Adaptive Security Appliance Software 7.0.7

  • Cisco Adaptive Security Appliance Software 7.0.8

  • Cisco Adaptive Security Appliance Software 7.1

  • Cisco Adaptive Security Appliance Software 7.1%282%29

  • Cisco Adaptive Security Appliance Software 7.1%282.27%29

  • Cisco Adaptive Security Appliance Software 7.1%282.48%29

  • Cisco Adaptive Security Appliance Software 7.1%282.49%29

  • Cisco Adaptive Security Appliance Software 7.1%282.5%29

  • Cisco Adaptive Security Appliance Software 7.1%285%29

  • Cisco Adaptive Security Appliance Software 7.1.1

  • Cisco Adaptive Security Appliance Software 7.1.2

  • Cisco Adaptive Security Appliance Software 7.2

  • Cisco Adaptive Security Appliance Software 7.2%281%29

  • Cisco Adaptive Security Appliance Software 7.2%281.22%29

  • Cisco Adaptive Security Appliance Software 7.2%282%29

  • Cisco Adaptive Security Appliance Software 7.2%282.10%29

  • Cisco Adaptive Security Appliance Software 7.2%282.14%29

  • Cisco Adaptive Security Appliance Software 7.2%282.15%29

  • Cisco Adaptive Security Appliance Software 7.2%282.16%29

  • Cisco Adaptive Security Appliance Software 7.2%282.17%29

  • Cisco Adaptive Security Appliance Software 7.2%282.18%29

  • Cisco Adaptive Security Appliance Software 7.2%282.19%29

  • Cisco Adaptive Security Appliance Software 7.2%282.48%29

  • Cisco Adaptive Security Appliance Software 7.2%282.5%29

  • Cisco Adaptive Security Appliance Software 7.2%282.7%29

  • Cisco Adaptive Security Appliance Software 7.2%282.8%29

  • Cisco Adaptive Security Appliance Software 7.2%283%29

  • Cisco Adaptive Security Appliance Software 7.2%284%29

  • Cisco Adaptive Security Appliance Software 7.2%285%29

  • Cisco Adaptive Security Appliance Software 7.2.1

  • Cisco Adaptive Security Appliance Software 7.2.2

  • Cisco Adaptive Security Appliance Software 7.2.3

  • Cisco Adaptive Security Appliance Software 7.2.4

  • Cisco Adaptive Security Appliance Software 7.2.5

  • Cisco Adaptive Security Appliance Software 8.0

  • Cisco Adaptive Security Appliance Software 8.0%282%29

  • Cisco Adaptive Security Appliance Software 8.0%283%29

  • Cisco Adaptive Security Appliance Software 8.0%284%29

  • Cisco Adaptive Security Appliance Software 8.0%285%29

  • Cisco Adaptive Security Appliance Software 8.0.2

  • Cisco Adaptive Security Appliance Software 8.0.3

  • Cisco Adaptive Security Appliance Software 8.0.4

  • Cisco Adaptive Security Appliance Software 8.0.5

  • Cisco Adaptive Security Appliance Software 8.1

  • Cisco Adaptive Security Appliance Software 8.2%281%29

  • Cisco Adaptive Security Appliance Software 8.2%282%29

  • Cisco Adaptive Security Appliance Software 8.2%283%29

  • Cisco Adaptive Security Appliance Software 8.2%283.9%29

  • Cisco Adaptive Security Appliance Software 8.2%284%29

  • Cisco Adaptive Security Appliance Software 8.2%284.1%29

  • Cisco Adaptive Security Appliance Software 8.2%284.4%29

  • Cisco Adaptive Security Appliance Software 8.2%285%29

  • Cisco Adaptive Security Appliance Software 8.2.1

  • Cisco Adaptive Security Appliance Software 8.2.2

  • Cisco Adaptive Security Appliance Software 8.2.3

  • Cisco Adaptive Security Appliance Software 8.3%281%29

  • Cisco Adaptive Security Appliance Software 8.3%282%29

  • Cisco Adaptive Security Appliance Software 8.3.1

  • Cisco Adaptive Security Appliance Software 8.3.2

  • Cisco Adaptive Security Appliance Software 8.4

  • Cisco Adaptive Security Appliance Software 8.4%281%29

  • Cisco Adaptive Security Appliance Software 8.4%281.11%29

  • Cisco Adaptive Security Appliance Software 8.4%282%29

  • Cisco Adaptive Security Appliance Software 8.4%282.11%29

  • Cisco Adaptive Security Appliance Software 8.5

  • Cisco Adaptive Security Appliance Software 8.6

  • Cisco Adaptive Security Appliance Software 8.6%281%29


References

CISCO - 20120314 Cisco ASA 5500 Series Adaptive Security Appliance Clientless VPN ActiveX Control Remote Code Execution Vulnerability

CERT-VN - VU#339177


Last Updated: 27 May 2016 10:58:23