5
CVSSv2

CVE-2013-1195

Published: 24/04/2013 Updated: 11/08/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The time-based ACL implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properly handle periodic statements for the time-range command, which allows remote malicious users to bypass intended access restrictions by sending network traffic during denied time periods, aka Bug IDs CSCuf79091 and CSCug45850.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco firewall services module

cisco adaptive security appliance software -

Vendor Advisories

A vulnerability in the implementation of the time-range object could allow an unauthenticated, remote attacker to bypass access lists that are using the time-range option The vulnerability is due to improper implementation of the code for the time-range object, when the periodic command is used Due to this issue, the time-range object may have n ...