{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T12:05:48Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"Cisco-SA-20070118-CVE-2007-0397","slug":"cisco-sa-20070118-cve-2007-0397","vendor":"Cisco","title":"Cisco Security Monitoring, Analysis and Response System and Adaptive Security Device Manager Secure Communication Vulnerability","summary":"Cisco Security Monitoring, Analysis and Response System versions prior to 4.2.3 and Cisco Adaptive Security Device Manager versions prior to 5.2(2.1) contain a vulnerability that could allow an unauthenticated, remote attacker to impersonate a device managed by the system. The vulnerability exists because the devices to not properly validate SSL/TLS certificates or SSH public keys from managed devices.&nbsp; An unauthenticated, remote attacker could exploit this vulnerability to impersonate devices managed by the system.&nbsp; An attacker could leverage this to gain access to sensitive information, such as authentication credentials, or submit false data to the system. Exploit code is not required to exploit this vulnerability. Cisco confirmed the vulnerability with a security advisory and released updated software. Because the affected applications do not validate the SSL/TLS certificates or SSH public keys presented by their managed devices, an attacker could set up a system with the same IP address as a vulnerable system and hope that a connection will be mistakenly made to the impersonating device rather than the legitimate one.&nbsp; This is a possibility, given the nature of IP routing, when there is more than one system on the network with the same IP address.&nbsp; However, erratic routing behavior is likely to result under these circumstances.&nbsp; Some packets may be sent to the legitimate system while others may be sent to the impersonator, making it harder for the attacker to obtain authentication credentials or to send misleading information.","severity":"Medium","published_at":"2007-01-18T18:11:27Z","updated_at":"2007-01-18T18:11:27Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20070118-CVE-2007-0397","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/Cisco-SA-20070118-CVE-2007-0397/csaf/Cisco-SA-20070118-CVE-2007-0397.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":2,"public_evidence_count":2,"kev_count":0},"cves":[{"id":"CVE-2007-0397","kev":false}],"public_evidence":[{"product":{"name":"Cisco Adaptive Security Device Manager (ASDM)","slug":"cisco-adaptive-security-device-manager-asdm","vendor":"Cisco"},"cve":{"id":"CVE-2007-0397"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:46:37Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco Adaptive Security Device Manager (ASDM)","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"published_at":"2007-01-18T18:11:27Z","updated_at":"2007-01-18T18:11:27Z","advisory_updated_at":"2007-01-18T18:11:27Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20070118-CVE-2007-0397","row_display_order":1},{"product":{"name":"Cisco Security Monitoring, Analysis, and Response System (MARS)","slug":"cisco-security-monitoring-analysis-and-response-system-mars","vendor":"Cisco"},"cve":{"id":"CVE-2007-0397"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:46:37Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco Security Monitoring, Analysis, and Response System (MARS)","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"published_at":"2007-01-18T18:11:27Z","updated_at":"2007-01-18T18:11:27Z","advisory_updated_at":"2007-01-18T18:11:27Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20070118-CVE-2007-0397","row_display_order":2}]}