Lucene search

K
cveCiscoCVE-2013-1215
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2013-1215

2022-10-0316:14:50
CWE-264
cisco
web.nvd.nist.gov
26
cisco
asa
5505
easy vpn
privilege escalation
cve-2013-1215

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.1%

The vpnclient program in the Easy VPN component on Cisco Adaptive Security Appliances (ASA) 5505 devices allows local users to gain privileges via unspecified vectors, aka Bug ID CSCuf85295.

Affected configurations

Nvd
Node
ciscoadaptive_security_appliance_softwareMatch-
AND
cisco5500_series_adaptive_security_appliance
OR
ciscoasa_5500
VendorProductVersionCPE
ciscoadaptive_security_appliance_software-cpe:/o:cisco:adaptive_security_appliance_software:-:::
ciscoasa_5500cpe:/h:cisco:asa_5500::::
cisco5500_series_adaptive_security_appliancecpe:/h:cisco:5500_series_adaptive_security_appliance::::

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2013-1215