VDB
CVE-2016-1301
CVE-2016-1301
PUBLISHED
CVSS 8.5 HIGH
The RBAC implementation in Cisco ASA-CX Content-Aware Security software before 9.3.1.1(112) and Cisco Prime Security Manager (PRSM) software before 9.3.1.1(112) allows remote authenticated users to change arbitrary passwords via a crafted HTTP request, aka Bug ID CSCuo94842.
EPSS 0.27% · 51.3th percentile
Risk Scores
CVSS 2.0
8.5
EPSS Score
0.27%
51.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| cisco | prime_security_manager | 9.0.1-40, 9.0.2-68, 9.1.2-29 |
| cisco | asa_cx_context-aware_security_software | 9.2.1-3, 9.2.1-1, 9.1.3-8 |
| n/a | n/a | n/a |
Exploit Intelligence
Timeline
- Feb 3, 2016 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score