Lucene search

K
cveCiscoCVE-2013-1199
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2013-1199

2022-10-0316:14:49
CWE-362
cisco
web.nvd.nist.gov
27
cve-2013-1199
race condition
cifs
cisco asa
denial of service
bug id cscub58996
nvd

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

44.2%

Race condition in the CIFS implementation in the rewriter module in the Clientless SSL VPN component on Cisco Adaptive Security Appliances (ASA) devices allows remote authenticated users to cause a denial of service (device reload) by accessing resources within multiple sessions, aka Bug ID CSCub58996.

Affected configurations

Nvd
Node
ciscoadaptive_security_appliance_clientless_ssl_vpnMatch-
OR
ciscoadaptive_security_appliance_softwareMatch-
AND
ciscoadaptive_security_appliance
VendorProductVersionCPE
ciscoadaptive_security_appliancecpe:/h:cisco:adaptive_security_appliance::::
ciscoadaptive_security_appliance_software-cpe:/o:cisco:adaptive_security_appliance_software:-:::
ciscoadaptive_security_appliance_clientless_ssl_vpn-cpe:/a:cisco:adaptive_security_appliance_clientless_ssl_vpn:-:::

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:H/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

44.2%

Related for CVE-2013-1199