10
CVE-2013-5511
- EPSS 1.84%
- Veröffentlicht 13.10.2013 10:20:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
The Adaptive Security Device Management (ASDM) remote-management feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(6), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.7), 9.0.x before 9.0(3.1), and 9.1.x before 9.1(2.6) does not properly implement the authentication-certificate option, which allows remote attackers to bypass authentication via a TCP session to an ASDM interface, aka Bug ID CSCuh44815.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Adaptive Security Appliance Software Version8.2
Cisco ≫ Adaptive Security Appliance Software Version8.2.1
Cisco ≫ Adaptive Security Appliance Software Version8.2.2
Cisco ≫ Adaptive Security Appliance Software Version8.2.2 Updateinterim
Cisco ≫ Adaptive Security Appliance Software Version8.2.3
Cisco ≫ Adaptive Security Appliance Software Version8.3.1
Cisco ≫ Adaptive Security Appliance Software Version8.3.1 Updateinterim
Cisco ≫ Adaptive Security Appliance Software Version8.3.2
Cisco ≫ Adaptive Security Appliance Software Version8.4
Cisco ≫ Adaptive Security Appliance Software Version8.5
Cisco ≫ Adaptive Security Appliance Software Version8.6
Cisco ≫ Adaptive Security Appliance Software Version8.7.1
Cisco ≫ Adaptive Security Appliance Software Version8.7.1.1
Cisco ≫ Adaptive Security Appliance Software Version9.0
Cisco ≫ Adaptive Security Appliance Software Version9.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.84% | 0.813 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.