10-Year-Old Cisco Security Flaw Under Active Attack: WebVPN Users at Risk
Cisco reported active exploitation of CVE-2014-2120, a vulnerability in their Adaptive Security Appliance (ASA) from 2014, rated with a CVSS score of 4.3. The flaw enables remote attackers to execute cross-site scripting attacks via ASA's WebVPN login page when users interact with maliciou...
