CVE-2013-5536: Input Validation
Published Oct 24, 2013
·Updated
Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafted packets, aka Bug ID CSCui51521.
Affected Software
1 affected component
Cisco Secure Access Control System
Event History
Oct 24, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5536?
The severity of CVE-2013-5536 is considered high due to its potential for causing denial of service.
2
How do I fix CVE-2013-5536?
To fix CVE-2013-5536, update your Cisco Secure Access Control System software to the latest version.
3
What impact does CVE-2013-5536 have?
CVE-2013-5536 allows remote attackers to crash the system via a flood of crafted packets.
4
When was CVE-2013-5536 disclosed?
CVE-2013-5536 was disclosed in 2013.
5
Which versions of Cisco Secure Access Control System are affected by CVE-2013-5536?
CVE-2013-5536 affects all versions of Cisco Secure Access Control System prior to the patched versions.