Vulnerabilities > Cisco > ASA CX Context Aware Security Software > 9.2.1.4

DATE CVE VULNERABILITY TITLE RISK
2016-02-07 CVE-2016-1301 Improper Access Control vulnerability in Cisco products
The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuo94842.
network
low complexity
cisco CWE-284
8.8