CVE-2016-1301

The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuo94842.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityHIGH
CVSS8.8
EPSS0.28% EPSS medium
CWECWE-284
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Prime Security Manager (PRSM) cisco-sa-20160203-prsm structured affected CSAF product_status
Cisco ASA CX Context-Aware Security Software cisco-sa-20160203-prsm structured affected CSAF product_status