← Back

CVE-2013-5511

nvd nist
Published: Oct 13, 2013Modified: Apr 29, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

The Adaptive Security Device Management (ASDM) remote-management feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(6), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.7), 9.0.x before 9.0(3.1), and 9.1.x before 9.1(2.6) does not properly implement the authentication-certificate option, which allows remote attackers to bypass authentication via a TCP session to an ASDM interface, aka Bug ID CSCuh44815.

Affected (44)

1 product
Configuration A
44 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 8.2.1
Version 8.2.2
Version 8.2.2 interim
Version 8.2.3
Version 8.2
Version 8.2(1)
Version 8.2(2)
Version 8.2(3.9)
Version 8.2(3)
Version 8.2(4.1)
Version 8.2(4.4)
Version 8.2(4)
Version 8.2(5.35)
Version 8.2(5.38)
Version 8.2(5)
Version 8.3.1
Version 8.3.1 interim
Version 8.3.2
Version 8.3(1)
Version 8.3(2.34)
Version 8.3(2.37)
Version 8.3(2)
Version 8.4
Version 8.4(1.11)
Version 8.4(1)
Version 8.4(2.11)
Version 8.4(2)
Version 8.4(3)
Version 8.4(4.11)
Version 8.4(5)
Version 8.5
Version 8.5(1.17)
Version 8.5(1.4)
Version 8.5(1)
Version 8.6
Version 8.6(1.10)
Version 8.6(1.3)
Version 8.6(1)
Version 8.7.1.1
Version 8.7.1
Version 8.7(1.3)
Version 9.0
Version 9.1
Version 9.1(1.7)

Timeline

No history available yet.