CVE detail
CVE-2014-3314 — CVE-2014-3314
Published 2015-01-14 · Modified 2026-06-17 · Vendor cisco · Product anyconnect_secure_mobility_client · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0109
EPSS probability
exploitation probability, 30d
62.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Cisco AnyConnect on Android and OS X does not properly verify the host type, which allows remote attackers to spoof authentication forms and possibly capture credentials via unspecified vectors, aka Bug IDs CSCuo24931 and CSCuo24940.
Remediation
| Product | Vulnerable range | Fixed version | Advisory |
|---|
| n/a n/a | — | not specified | advisory ↗ |
References