AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-1202

MEDIUM · CVSS 4.3 EPSS 1.98%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-06-25 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-1202
Severity
MEDIUM
CVSS
4.3
EPSS
1.98%
Cisco

Original NVD Description

WebVPN on the Cisco Adaptive Security Appliances (ASA) device with software 8.0(4), 8.1.2, and 8.2.1 allows remote attackers to bypass certain protection mechanisms involving URL rewriting and HTML rewriting, and conduct cross-site scripting (XSS) attacks, by modifying the first hex-encoded character in a /+CSCO+ URI, aka Bug ID CSCsy80705.