CVE-2013-6682 (CNNVD-201311-145)

MEDIUM
中文标题:
Cisco Adaptive Security Appliance Phone Proxy Database 安全绕过漏洞
英文标题:
The phone-proxy implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earli...
CVSS分数: 6.4
发布时间: 2013-11-13 15:00:00
漏洞类型: 输入验证错误
状态: PUBLISHED
数据质量分数: 0.30
数据版本: v3
漏洞描述
中文描述:

Cisco Adaptive Security Appliances(ASA,自适应安全设备)Software是美国思科(Cisco)公司的一套运行于防火墙中的操作系统。 Cisco ASA中的phone proxy功能中存在安全绕过漏洞,该漏洞源于手机代理连接数据库没有正确处理不可信的证书。远程攻击者可通过提交特制的证书利用该漏洞插入无效的条目到手机代理连接数据库。

英文描述:

The phone-proxy implementation in Cisco Adaptive Security Appliance (ASA) Software 9.0.3.6 and earlier does not properly validate X.509 certificates, which allows remote attackers to cause a denial of service (connection-database corruption) via an invalid entry, aka Bug ID CSCui33299.

CWE类型:
CWE-20
标签:
(暂无数据)
受影响产品
厂商 产品 版本 版本范围 平台 CPE
cisco adaptive_security_appliance_software * - - cpe:2.3:a:cisco:adaptive_security_appliance_software:*:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(0\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(0\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(5.2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(5.2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(6\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(6\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(6.7\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(6.7\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(7\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(7\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0\(8\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0\(8\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.1.4 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.1.4:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.4 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.4:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.4.3 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.4.3:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.5 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.5:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.6 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.6:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.7 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.7:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.0.8 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.0.8:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(2.5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(2.5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(2.27\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(2.27\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(2.48\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(2.48\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(2.49\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(2.49\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.1.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.1.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(1.22\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(1.22\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.7\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.7\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.8\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.8\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.10\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.10\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.14\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.14\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.15\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.15\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.16\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.16\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.17\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.17\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.18\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.18\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.19\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.19\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(2.48\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(2.48\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2.3 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.3:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2.4 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.4:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 7.2.5 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:7.2.5:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(5.28\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(5.28\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0\(5.31\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0\(5.31\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0.3 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.3:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0.4 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.4:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.0.5 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.0.5:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(3.9\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(3.9\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(4.1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4.1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(4.4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(4.4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(5.35\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(5.35\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2\(5.38\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2\(5.38\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.2.3 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.2.3:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3\(2.34\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(2.34\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3\(2.37\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3\(2.37\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.3.2 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.3.2:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(1.11\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(1.11\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(2.11\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(2.11\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(4.11\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(4.11\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(5\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(5\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.4\(6\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.4\(6\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.5 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.5\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.5\(1.4\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5\(1.4\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.5\(1.17\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.5\(1.17\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.6 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.6\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.6\(1.3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6\(1.3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.6\(1.10\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.6\(1.10\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.7 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.7:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.7\(1.1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.7\(1.1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.7\(1.3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.7\(1.3\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.7.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.7.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 8.7.1.1 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:8.7.1.1:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 9.0 - - cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0:*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 9.0\(1\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0\(1\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 9.0\(2\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0\(2\):*:*:*:*:*:*:*
cisco adaptive_security_appliance_software 9.0\(3\) - - cpe:2.3:o:cisco:adaptive_security_appliance_software:9.0\(3\):*:*:*:*:*:*:*
解决方案
中文解决方案:
(暂无数据)
英文解决方案:
(暂无数据)
临时解决方案:
(暂无数据)
参考链接
无标题 x_refsource_CONFIRM
cve.org
访问
20131108 Cisco Adaptive Security Appliance Phone Proxy Database Entry Manipulation Vulnerability vendor-advisory
cve.org
访问
CVSS评分详情
6.4
MEDIUM
CVSS向量: AV:N/AC:L/Au:N/C:N/I:P/A:P
CVSS版本: 2.0
机密性
NONE
完整性
PARTIAL
可用性
PARTIAL
时间信息
发布时间:
2013-11-13 15:00:00
修改时间:
2024-09-17 00:05:38
创建时间:
2025-11-11 15:33:40
更新时间:
2025-11-11 15:51:02
利用信息
暂无可利用代码信息
数据源详情
数据源 记录ID 版本 提取时间
CVE cve_CVE-2013-6682 2025-11-11 15:18:40 2025-11-11 07:33:40
NVD nvd_CVE-2013-6682 2025-11-11 14:54:16 2025-11-11 07:42:26
CNNVD cnnvd_CNNVD-201311-145 2025-11-11 15:09:24 2025-11-11 07:51:02
版本与语言
当前版本: v3
主要语言: EN
支持语言:
EN ZH
安全公告
暂无安全公告信息
变更历史
v3 CNNVD
2025-11-11 15:51:02
vulnerability_type: 未提取 → 输入验证错误; cnnvd_id: 未提取 → CNNVD-201311-145; data_sources: ['cve', 'nvd'] → ['cnnvd', 'cve', 'nvd']
查看详细变更
  • vulnerability_type: 未提取 -> 输入验证错误
  • cnnvd_id: 未提取 -> CNNVD-201311-145
  • data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
v2 NVD
2025-11-11 15:42:26
cvss_score: 未提取 → 6.4; cvss_vector: NOT_EXTRACTED → AV:N/AC:L/Au:N/C:N/I:P/A:P; cvss_version: NOT_EXTRACTED → 2.0; affected_products_count: 0 → 111; data_sources: ['cve'] → ['cve', 'nvd']
查看详细变更
  • cvss_score: 未提取 -> 6.4
  • cvss_vector: NOT_EXTRACTED -> AV:N/AC:L/Au:N/C:N/I:P/A:P
  • cvss_version: NOT_EXTRACTED -> 2.0
  • affected_products_count: 0 -> 111
  • data_sources: ['cve'] -> ['cve', 'nvd']