The Adaptive Security Device Management (ASDM) remote-management feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(6), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.7), 9.0.x before 9.0(3.1), and 9.1.x before 9.1(2.6) does not properly implement the authentication-certificate option, which allows remote attackers to bypass authentication via a TCP session to an ASDM interface, aka Bug ID CSCuh44815.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2013-10-13 10:20
Updated : 2025-04-11 00:51
NVD link : CVE-2013-5511
Mitre link : CVE-2013-5511
CVE.ORG link : CVE-2013-5511
JSON object : View
Products Affected
cisco
- adaptive_security_appliance_software
CWE
CWE-287
Improper Authentication