Description
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct directory traversal attacks and read sensitive files on a targeted system.
Remediation
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
References
Related Vulnerabilities
WordPress Plugin Gmedia Photo Gallery Arbitrary File Upload (1.2.1)
Moodle Improper Input Validation Vulnerability (CVE-2012-6099)
PHP Improper Input Validation Vulnerability (CVE-2009-1272)
Python Improper Input Validation Vulnerability (CVE-2023-24329)
Vanilla Forums Improper Input Validation Vulnerability (CVE-2011-0908)