Vulnerabilities > Cisco > ASA 5515 X Firmware > 009.012

DATE CVE VULNERABILITY TITLE RISK
2022-06-24 CVE-2022-20829 Insufficient Verification of Data Authenticity vulnerability in Cisco products
A vulnerability in the packaging of Cisco Adaptive Security Device Manager (ASDM) images and the validation of those images by Cisco Adaptive Security Appliance (ASA) Software could allow an authenticated, remote attacker with administrative privileges to upload an ASDM image that contains malicious code to a device that is running Cisco ASA Software.
network
low complexity
cisco CWE-345
7.2
2021-10-27 CVE-2021-34787 Improper Handling of Exceptional Conditions vulnerability in Cisco products
A vulnerability in the identity-based firewall (IDFW) rule processing feature of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass security protections.
network
low complexity
cisco CWE-755
5.3