CVE Database
/

CVE-2014-2195

Back to search

CVE-2014-2195

Published: May 20, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Cisco AsyncOS on Email Security Appliance (ESA) and Content Security Management Appliance (SMA) devices, when Active Directory is enabled, does not properly handle group names, which allows remote attackers to gain role privileges by leveraging group-name similarity, aka Bug ID CSCum86085.

VendorProductVersions

n/a

n/a

affected
n/a

References

1030258
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now