The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuo94842.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2016-02-07 03:59
Updated : 2016-12-05 19:06
NVD link : CVE-2016-1301
Mitre link : CVE-2016-1301
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
cisco
- prime_security_manager
- asa_cx_context-aware_security_software