PT-2013-2960 · Cisco · Cisco Asa+1

Published

2013-04-12

·

Updated

2023-08-11

·

CVE-2013-1193

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Cisco Adaptive Security Appliances (ASA) devices (affected versions not specified) Cisco Firewall Services Module (FWSM) (affected versions not specified)
Description The Secure Shell (SSH) implementation does not properly terminate sessions, allowing remote attackers to cause a denial of service (SSH service outage) by repeatedly establishing SSH connections. This could deny SSH management access to legitimate users.
Recommendations For Cisco Adaptive Security Appliances (ASA) devices, apply configuration changes to limit the number of SSH connections. For Cisco Firewall Services Module (FWSM), restrict access to the SSH function to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2013-1193

Affected Products

Cisco Asa
Cisco Firewall Services Module