Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services module in Cisco Catalyst 6500 series devices, with software 7.0 before 7.0(8.13), 7.1 and 7.2 before 7.2(5.3), 8.0 before 8.0(5.24), 8.1 before 8.1(2.50), 8.2 before 8.2(5), 8.3 before 8.3(2.18), 8.4 before 8.4(1.10), and 8.5 before 8.5(1.1) and Cisco Firewall Services Module (aka FWSM) 3.1 before 3.1(21), 3.2 before 3.2(22), 4.0 before 4.0(16), and 4.1 before 4.1(7) allow remote attackers to bypass authentication via a crafted TACACS+ reply, aka Bug IDs CSCto40365 and CSCto74274.
Conclusion & alert: CVE-2011-3298 is rated Moderate Risk (51/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.86%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.23% | 0.86% | +0.63% |
| 2 | 2025-03-30 | 0.42% | 0.23% | -0.20% |
| 3 | 2025-03-29 | — | 0.42% | — |
Full EPSS history (8 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.9 | 2.0 | HIGH |
|
5.5 | 10.0 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | 7.0 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(0\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(0\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(4\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(4\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(5\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(5\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(5.2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(5.2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(6\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(6\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(6.7\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(6.7\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(7\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(7\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0\(8\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(8\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.1.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.1.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.4.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.4.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.6 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.6:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.7 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.7:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.8:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.0.8 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.8:interim:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(1.22\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(1.22\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.5\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.5\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.7\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.7\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.8\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.8\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.10\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.10\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.14\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.14\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.15\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.15\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.16\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.16\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.17\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.17\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.18\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.18\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.19\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.19\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(2.48\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.48\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(3\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(3\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(4\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(4\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2\(5\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(5\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 7.2.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0\(3\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(3\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0\(4\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(4\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0\(5\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(5\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0.3 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.3:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0.4 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.4:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.0.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(3\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(3\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(3.9\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(3.9\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(4\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(4.1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4.1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(4.4\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4.4\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2\(5\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(5\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2.1 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.1:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.2:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.2.2 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.2:interim:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.3\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.3\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.4\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(1\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.4\(1.11\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(1.11\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.4\(2\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(2\):*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.5 | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5:*:*:*:*:*:*:* |
| cisco | adaptive_security_appliance_software | 8.5\(1\) | cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5\(1\):*:*:*:*:*:*:* |
| cisco | 5500_series_adaptive_security_appliance | — | cpe:2.3:h:cisco:5500_series_adaptive_security_appliance:*:*:*:*:*:*:*:* |
| cisco | asa_5500 | — | cpe:2.3:h:cisco:asa_5500:*:*:*:*:*:*:*:* |
| cisco | firewall_services_module_software | 3.1 | cpe:2.3:a:cisco:firewall_services_module_software:3.1:*:*:*:*:*:*:* |
| cisco | firewall_services_module_software | 3.1\(2\) | cpe:2.3:a:cisco:firewall_services_module_software:3.1\(2\):*:*:*:*:*:*:* |
| cisco | firewall_services_module_software | 3.1\(3\) | cpe:2.3:a:cisco:firewall_services_module_software:3.1\(3\):*:*:*:*:*:*:* |
| cisco | firewall_services_module_software | 3.1\(4\) | cpe:2.3:a:cisco:firewall_services_module_software:3.1\(4\):*:*:*:*:*:*:* |
| cisco | firewall_services_module_software | 3.1\(5\) | cpe:2.3:a:cisco:firewall_services_module_software:3.1\(5\):*:*:*:*:*:*:* |