CVE-2014-3410: Cisco Adaptive Security Appliance Software

Medium severity, CVSS 4.3. EPSS: 1.5% chance of exploitation in the next 30 days.

The syslog-management subsystem in Cisco Adaptive Security Appliance (ASA) Software allows remote attackers to obtain an administrator password by waiting for an administrator to copy a file, and then (1) sniffing the network for a syslog message or (2) reading a syslog message in a file on a syslog server, aka Bug IDs CSCuq22357 and CSCur41860.

Affected products

  • Cisco Adaptive Security Appliance Software: affected versions not specified

Published 2014-12-20. Last modified 2026-06-17.