PT-2013-2960 · Cisco · Cisco Asa+1
CVE-2013-1193
·
Publicado
2013-04-12
·
Atualizado
2023-08-11
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco Adaptive Security Appliances (ASA) devices (affected versions not specified)
Cisco Firewall Services Module (FWSM) (affected versions not specified)
Description
The Secure Shell (SSH) implementation does not properly terminate sessions, allowing remote attackers to cause a denial of service (SSH service outage) by repeatedly establishing SSH connections. This could deny SSH management access to legitimate users.
Recommendations
For Cisco Adaptive Security Appliances (ASA) devices, apply configuration changes to limit the number of SSH connections.
For Cisco Firewall Services Module (FWSM), restrict access to the SSH function to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cisco Asa
Cisco Firewall Services Module