← Back

CVE-2011-3298

nvd nist
Published: Oct 6, 2011Modified: Apr 29, 2026

JSON object

Loading...
7.9
Vector
AV:A/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 5.5 / Impact: 10.0
Source: NVD

Description

Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 before 7.0(8.13), 7.1 and 7.2 before 7.2(5.3), 8.0 before 8.0(5.24), 8.1 before 8.1(2.50), 8.2 before 8.2(5), 8.3 before 8.3(2.18), 8.4 before 8.4(1.10), and 8.5 before 8.5(1.1) and Cisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7) allow remote attackers to bypass authentication via a crafted TACACS+ reply, aka Bug IDs CSCto40365 and CSCto74274.

Affected (141)

6 products
Asa 5500
Firewall Services Module Software
Catalyst 6500
Catalyst 7600
Configuration A
75 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 7.0.1.4
Version 7.0.1
Version 7.0.2
Version 7.0.4.3
Version 7.0.4
Version 7.0.5
Version 7.0.6
Version 7.0.7
Version 7.0.8
Version 7.0.8 interim
Version 7.0
Version 7.0(0)
Version 7.0(1)
Version 7.0(2)
Version 7.0(4)
Version 7.0(5.2)
Version 7.0(5)
Version 7.0(6.7)
Version 7.0(6)
Version 7.0(7)
Version 7.0(8)
Version 7.1
Version 7.2.1
Version 7.2.2
Version 7.2.3
Version 7.2.4
Version 7.2.5
Version 7.2
Version 7.2(1.22)
Version 7.2(1)
Version 7.2(2.10)
Version 7.2(2.14)
Version 7.2(2.15)
Version 7.2(2.16)
Version 7.2(2.17)
Version 7.2(2.18)
Version 7.2(2.19)
Version 7.2(2.48)
Version 7.2(2.5)
Version 7.2(2.7)
Version 7.2(2.8)
Version 7.2(2)
Version 7.2(3)
Version 7.2(4)
Version 7.2(5)
Version 8.0.2
Version 8.0.3
Version 8.0.4
Version 8.0.5
Version 8.0
Version 8.0(2)
Version 8.0(3)
Version 8.0(4)
Version 8.0(5)
Version 8.1
Version 8.2.1
Version 8.2.2
Version 8.2.2 interim
Version 8.2(1)
Version 8.2(2)
Version 8.2(3.9)
Version 8.2(3)
Version 8.2(4.1)
Version 8.2(4.4)
Version 8.2(4)
Version 8.2(5)
Version 8.3(1)
Version 8.3(2)
Version 8.4(1.11)
Version 8.4(1)
Version 8.4(2)
Version 8.5
Version 8.5(1)
All versions
All versions
Configuration B
66 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 3.1
Version 3.1(10)
Version 3.1(11)
Version 3.1(12)
Version 3.1(13)
Version 3.1(14)
Version 3.1(15)
Version 3.1(16)
Version 3.1(17)
Version 3.1(18)
Version 3.1(19)
Version 3.1(20)
Version 3.1(2)
Version 3.1(3)
Version 3.1(4)
Version 3.1(5)
Version 3.1(6)
Version 3.1(7)
Version 3.1(8)
Version 3.1(9)
Version 3.2
Version 3.2(10)
Version 3.2(11)
Version 3.2(12)
Version 3.2(13)
Version 3.2(14)
Version 3.2(15)
Version 3.2(16)
Version 3.2(17)
Version 3.2(18)
Version 3.2(19)
Version 3.2(1)
Version 3.2(20)
Version 3.2(21)
Version 3.2(2)
Version 3.2(3)
Version 3.2(4)
Version 3.2(5)
Version 3.2(6)
Version 3.2(7)
Version 3.2(8)
Version 3.2(9)
Version 4.0
Version 4.0(10)
Version 4.0(11)
Version 4.0(12)
Version 4.0(13)
Version 4.0(14)
Version 4.0(15)
Version 4.0(1)
Version 4.0(2)
Version 4.0(3)
Version 4.0(4)
Version 4.0(5)
Version 4.0(6)
Version 4.0(7)
Version 4.0(8)
Version 4.1
Version 4.1(1)
Version 4.1(2)
Version 4.1(3)
Version 4.1(4)
Version 4.1(5)
Version 4.1(6)
All versions
All versions

References (6)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.