CVE-2013-5506

CWE-264CWE-3995 documents4 sources
Severity
6.6MEDIUM
EPSS
0.1%
top 76.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13
Latest updateMay 17

Description

The authorization functionality in Cisco Firewall Services Module (FWSM) 3.1.x and 3.2.x before 3.2(25) and 4.x before 4.1(13), when multiple-context mode is enabled, allows local users to read or modify any context's configuration via unspecified commands, aka Bug ID CSCue46080.

CVSS vector

AV:L/AC:M/C:C/I:C/A:CExploitability: 2.7 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-v8fc-6rvq-p7r9: The authorization functionality in Cisco Firewall Services Module (FWSM) 32022-05-17
CVEList
CVE-2013-5506: The authorization functionality in Cisco Firewall Services Module (FWSM) 32013-10-13

📋Vendor Advisories

2
Cisco
Cisco Firewall Services Module Command Authorization Vulnerability2013-10-09
Cisco
Multiple Vulnerabilities in Cisco Firewall Services Module Software2013-10-09