The ASA flaw CVE-2014-2120 is being actively exploited in the wild

Share:

Cisco warns customers that a decade-old ASA vulnerability, tracked as CVE-2014-2120, is being actively exploited in the wild.

Cisco warns that the decade-old ASA vulnerability CVE-2014-2120 is being actively exploited in attacks in the wild, and urges customers to review the updated advisory.

The vulnerability resides in the WebVPN login page of Cisco Adaptive Security Appliance (ASA) Software, an unauthenticated, remote attacker could exploit the flaw to conduct a cross-site scripting (XSS) attack against a user of WebVPN on the Cisco ASA.

“A vulnerability in the WebVPN login page of Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of WebVPN on the Cisco ASA.” reads the advisory. “The vulnerability is due to insufficient input validation of a parameter. An attacker could exploit this vulnerability by convincing a user to access a malicious link.”

The networking giant first published the advisory on March 18, 2024, however in November 2024, Cisco PSIRT detected new exploitation attempts for the vulnerability.

“In November 2024, the Cisco Product Security Incident Response Team (PSIRT) became aware of additional attempted exploitation of this vulnerability in the wild.” continues the advisory. “Cisco continues to strongly recommend that customers upgrade to a fixed software release to remediate this vulnerability.”

In November, the US CISA added the vulnerability CVE-2014-2120 to its Known Exploited Vulnerabilities (KEV) catalog.

SOURCE

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
5:19 am, Apr 22, 2025
weather icon 7°C
L: 5° | H: 8°
overcast clouds
Humidity: 90 %
Pressure: 1015 mb
Wind: 1 mph WNW
Wind Gust: 3 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 98%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 5:49 am
Sunset: 8:07 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
5° | 8°°C 0 mm 0% 10 mph 91 % 1017 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
8° | 10°°C 1 mm 100% 13 mph 94 % 1018 mb 0 mm/h
Thu Apr 24 10:00 pm
weather icon
8° | 13°°C 0 mm 0% 4 mph 88 % 1022 mb 0 mm/h
Fri Apr 25 10:00 pm
weather icon
10° | 17°°C 0 mm 0% 8 mph 90 % 1021 mb 0 mm/h
Sat Apr 26 10:00 pm
weather icon
10° | 17°°C 1 mm 100% 14 mph 94 % 1021 mb 0 mm/h
Today 7:00 am
weather icon
7° | 7°°C 0 mm 0% 4 mph 91 % 1015 mb 0 mm/h
Today 10:00 am
weather icon
10° | 12°°C 0 mm 0% 7 mph 79 % 1016 mb 0 mm/h
Today 1:00 pm
weather icon
16° | 16°°C 0 mm 0% 8 mph 42 % 1017 mb 0 mm/h
Today 4:00 pm
weather icon
16° | 16°°C 0 mm 0% 10 mph 44 % 1016 mb 0 mm/h
Today 7:00 pm
weather icon
13° | 13°°C 0 mm 0% 10 mph 59 % 1016 mb 0 mm/h
Today 10:00 pm
weather icon
10° | 10°°C 0 mm 0% 7 mph 77 % 1016 mb 0 mm/h
Tomorrow 1:00 am
weather icon
10° | 10°°C 0 mm 0% 7 mph 79 % 1014 mb 0 mm/h
Tomorrow 4:00 am
weather icon
9° | 9°°C 1 mm 100% 11 mph 94 % 1011 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€76,585.23
1.19%
Ethereum(ETH)
€1,374.31
-3.19%
Tether(USDT)
€0.87
0.00%
XRP(XRP)
€1.81
-1.24%
Solana(SOL)
€120.82
-0.22%
USDC(USDC)
€0.87
0.00%
Dogecoin(DOGE)
€0.139945
0.73%
Shiba Inu(SHIB)
€0.000010
-1.37%
Pepe(PEPE)
€0.000007
3.03%
Scroll to Top