← Back

CVE-2013-5552

nvd nist
Published: Nov 13, 2013Modified: Apr 29, 2026

JSON object

Loading...
6.4
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:N
Exploitability: 10.0 / Impact: 4.9
Source: NVD

Description

Cisco IOS 12.4(24)MDB9 and earlier on Content Services Gateway (CSG) devices does not properly implement the "parse error drop" feature, which allows remote attackers to bypass intended access restrictions via a crafted series of packets, aka Bug ID CSCug90143.

Affected (26)

2 products
Ios
Content Services Gateway
Configuration A
26 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Up to 12.4\(24\)mdb14
Version 12.4(24)md1
Version 12.4(24)md2
Version 12.4(24)md3
Version 12.4(24)md4
Version 12.4(24)md5
Version 12.4(24)md5a
Version 12.4(24)md6
Version 12.4(24)md7
Version 12.4(24)md8
Version 12.4(24)md9
Version 12.4(24)md
Version 12.4(24)mda10
Version 12.4(24)mda11
Version 12.4(24)mda12
Version 12.4(24)mda13
Version 12.4(24)mda6
Version 12.4(24)mda7
Version 12.4(24)mda8
Version 12.4(24)mda9
Version 12.4(24)mdb10
Version 12.4(24)mdb11
Version 12.4(24)mdb12
Version 12.4(24)mdb13
Version 12.4mda12
All versions

Related CWEs

References (4)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.