CVE-2013-1243
published 2013-07-18CVE-2013-1243: The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before…
PriorityP434high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
1.33%
67.7th percentile
The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before 7.1(6)E4, and IPS 4300 sensors before 7.1(5)E4 allows remote attackers to cause a denial of service (MainApp process hang) via malformed IPv4 packets, aka Bug ID CSCtx18596.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | asa_5500-x_series_ips_ssp_software | — | — |
| cisco | intrusion_prevention_system | <= 7.1 | — |
| cisco | intrusion_prevention_system | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
vendor_cisco·2013-07-17·CVSS 7.8
CVE-2013-1218 [HIGH] CWE-119 Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
Cisco Intrusion Prevention System (IPS) Software is affected by the following vulnerabilities:
Cisco IPS Software Malformed IP Packets Denial of Service Vulnerability
Cisco IPS Software Fragmented Traffic Denial of Service Vulnerability
Cisco IPS NME Malformed IP Packets Denial of Service Vulnerability
Cisco IDSM-2 Malformed TCP Packets Denial of Service Vulnerability
The Cisco IPS Software Malformed IP Packets Denial of Service Vulnerability could allow an unauthenticated, remote attacker to cause the MainApp process to become unresponsive.
The Cisco IPS Software Fragmented Traffic Denial of Service Vulnerability could allow an unauthenticated, remote attacker to cause the Analysis Engine process to become unrespon
Cisco
Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
vendor_cisco
CVE-2013-1243 Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
CVE-2013-1243: Multiple Vulnerabilities in Cisco Intrusion Prevention System Software
Cisco Intrusion Prevention System (IPS) Software is affected by the following vulnerabilities: Cisco IPS Software Malformed IP Packets Denial of Service Vulnerability Cisco IPS Software Fragmented Traffic Denial of Service Vulnerability Cisco IPS NME Malformed IP Packets Denial of Service Vulnerability Cisco IDSM-2 Malformed TCP Packets Denial of Service Vulnerability The Cisco IPS Software Malformed IP Packets Denial of Service Vulnerability could allow an unauthenticated, remote attacker to cause the MainApp process to become unresponsive. The Cisco IPS Software Fragmented Traffic Denial of Service Vulnerability could allow an unauthenticated, remote attacker to cause the Analysis Engine process to beco
GHSA
GHSA-q93j-v62p-25v5: The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7
ghsa_unreviewed·2022-05-17
CVE-2013-1243 [HIGH] CWE-119 GHSA-q93j-v62p-25v5: The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7
The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before 7.1(6)E4, and IPS 4300 sensors before 7.1(5)E4 allows remote attackers to cause a denial of service (MainApp process hang) via malformed IPv4 packets, aka Bug ID CSCtx18596.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-07-18
Published