Description
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) do not properly preserve ACL behavior after a migration, which allows remote attackers to bypass intended access restrictions via an unspecified type of network traffic that had previously been denied, aka Bug ID CSCte46460.
References (4)
Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/64575
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1024963
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/45768
Release Notes x_refsource_confirm
http://www.cisco.com/en/US/docs/security/asa/asa83/release/notes/asarn83.pdf
Scores
EPSS
0.0255
EPSS Percentile
83.4%
Details
CWE
CWE-264
Status
published
Products (49)
cisco/5500_series_adaptive_security_appliance
cisco/adaptive_security_appliance_software
7.0
cisco/adaptive_security_appliance_software
7.0\(0\)
cisco/adaptive_security_appliance_software
7.0\(2\)
cisco/adaptive_security_appliance_software
7.0\(4\)
cisco/adaptive_security_appliance_software
7.0\(5\)
cisco/adaptive_security_appliance_software
7.0\(5.2\)
cisco/adaptive_security_appliance_software
7.0\(6.7\)
cisco/adaptive_security_appliance_software
7.0.1
cisco/adaptive_security_appliance_software
7.0.1.4
... and 39 more
Published
Jan 07, 2011
Tracked Since
Feb 18, 2026