PT-2019-2120 · Cisco · Cisco Asa+1

CVE-2019-1714

·

Publicado

2019-05-01

·

Atualizado

2023-08-15

CVSS v3.1

8.6

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Cisco Adaptive Security Appliance versions prior to the fixed version Cisco Firepower Threat Defense versions prior to the fixed version
Description The issue is related to improper credential management when using NT LAN Manager (NTLM) or basic authentication in the implementation of Security Assertion Markup Language (SAML) 2.0 Single Sign-On (SSO) for Clientless SSL VPN (WebVPN) and AnyConnect Remote Access VPN. An unauthenticated, remote attacker could exploit this by opening a VPN session to an affected device after another VPN user has successfully authenticated to the affected device via SAML SSO, potentially allowing the attacker to connect to secured networks behind the affected device.
Recommendations For Cisco Adaptive Security Appliance, update to a version that includes the fix for this issue. For Cisco Firepower Threat Defense, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to the SAML SSO feature until a patch is available. Avoid using NTLM or basic authentication for VPN connections until the issue is resolved.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2019-01877
CVE-2019-1714

Produtos afetados

Cisco Asa
Cisco Ftd