Vulnerability Intelligence Report
CVE-2011-0396
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 before 8.0(5.23), 8.1 before 8.1(2.49), 8.2 before 8.2(4.1), and 8.3 before 8.3(2.13), when a Certificate Authority (CA) is configured, allow remote attackers to read arbitrary files via unspecified vectors, aka Bug ID CSCtk12352.
No Active Exploit Signals
CVSS Base Score
7.8
HIGH
EPSS Probability:1.40%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| cisco | adaptive_security_appliance | 8.0\(2\), 8.0\(3\), 8.0\(4\), 8.0\(5\), 8.1\(1\), 8.1\(2\), 8.2, 8.2\(1\), 8.2\(2\), 8.3 |
| cisco | adaptive_security_appliance_software | 8.0, 8.3\(1\) |
| cisco | asa_5500 | all |
| cisco | asa_5505 | all |
| cisco | asa_5510 | all |
| cisco | asa_5520 | all |
| cisco | asa_5540 | all |
| cisco | asa_5550 | all |
| cisco | asa_5580 | all |
| cisco | pix_500 | all |
| cisco | pix_501 | all |
| cisco | pix_506e | all |
| cisco | pix_firewall_506 | all |
| cisco | pix_firewall_515 | all |
| cisco | pix_firewall_520 | all |
| cisco | pix_firewall_525 | all |
| cisco | pix_firewall_535 | all |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
1.401%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Cisco Systems, Inc. · Hosted Service · USA |
| Reserved | 2011-01-07T00:00:00 |
| Published | 2011-02-25T11:00:00 |
| Patch Date | 2011-02-23 |
| Last Updated | 2024-08-06T21:51:08 |
Community Chatter & Buzz