5.4
CVSSv2

CVE-2013-5544

Published: 22/10/2013 Updated: 11/08/2023
CVSS v2 Base Score: 5.4 | Impact Score: 6.9 | Exploitability Score: 4.9
VMScore: 481
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C

Vulnerability Summary

The VPN authentication functionality in Cisco Adaptive Security Appliance (ASA) Software allows remote malicious users to cause a denial of service (device reload) by sending many username-from-cert IKE requests, aka Bug ID CSCua91108.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco adaptive security appliance software -

Vendor Advisories

A vulnerability in the VPN authentication code that handles parsing of the username from the certificate on the Cisco ASA firewall could allow an unauthenticated, remote attacker to cause a reload of the affected device The vulnerability is due to parallel processing of a large number of Internet Key Exchange (IKE) requests for which username-fro ...