PT-2013-2960 · Cisco · Cisco Asa+1
Published
2013-04-12
·
Updated
2023-08-11
·
CVE-2013-1193
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco Adaptive Security Appliances (ASA) devices (affected versions not specified)
Cisco Firewall Services Module (FWSM) (affected versions not specified)
Description
The Secure Shell (SSH) implementation does not properly terminate sessions, allowing remote attackers to cause a denial of service (SSH service outage) by repeatedly establishing SSH connections. This could deny SSH management access to legitimate users.
Recommendations
For Cisco Adaptive Security Appliances (ASA) devices, apply configuration changes to limit the number of SSH connections.
For Cisco Firewall Services Module (FWSM), restrict access to the SSH function to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Asa
Cisco Firewall Services Module