logo

Decade-Old Cisco Vulnerability Under Active Exploit

ID: e046a685-1eb8-597d-86af-6264a25edf26

STIX ID: report--e046a685-1eb8-597d-86af-6264a25edf26

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2024-12-03

Date Updated: 2026-04-21

Author: Kristina Beek, Associate Editor, Dark Reading

...
...

Cisco warns that a decade-old vulnerability (CVE-2014-2120) in ASA WebVPN — an insufficient input validation issue enabling cross-site scripting — is being actively exploited as of November 2024; customers are urged to upgrade to fixed software releases since no workarounds exist.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.