Cisco says decade-old bug in ASA appliances exploited in the wild

Cisco says decade-old bug in ASA appliances exploited in the wild

Networking giant Cisco has updated its advisory to alert users about active exploitation of a ten-year-old vulnerability in its Adaptive Security Appliance (ASA) product.

The vulnerability, tracked as CVE-2014-2120, stems from insufficient input validation in ASA's WebVPN login page. Exploitation of this flaw could allow a remote, unauthenticated attacker to launch a cross-site scripting (XSS) attack, potentially compromising targeted users of the appliance.

The activity involving CVE-2014-2120 has been linked to the Mozi botnet, enabling attackers to amplify the scale and scope of their malicious campaigns. The Mozi botnet is infamous for its ability to exploit vulnerabilities in IoT and network devices.

Cisco is urging users of its ASA software to update their installations to the latest versions to prevent future attacks.

Back to the list

Latest Posts

Cyber Security Week in Review: February 7, 2025

Cyber Security Week in Review: February 7, 2025

In brief: Trimble Cityworks zero-day exploited in the wild, a SmokeLoader campaign caught abusing 7-Zip zero-day, and more.
7 February 2025
UAC-0006 returns with SmokeLoader targeting Ukraine's largest state-owned bank

UAC-0006 returns with SmokeLoader targeting Ukraine's largest state-owned bank

The campaign involves password-protected archives containing malicious JavaScript, VBScript, and LNK files.
6 February 2025
Silent Lynx cyber spies target embassies and banks in Kyrgyzstan and Turkmenistan

Silent Lynx cyber spies target embassies and banks in Kyrgyzstan and Turkmenistan

The group’s attacks begin with spear-phishing campaigns targeting high-profile individuals in organizations
5 February 2025