CVE-2013-5536
UnknownEPSS 1.50%
Last modified
CVE-2013-5536 is a vulnerability of currently unknown severity. Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafted packets, aka Bug ID CSCui51521.. EPSS estimates a 1.50% chance of exploitation in the next 30 days.
Description
Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafted packets, aka Bug ID CSCui51521.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Secure Access Control System | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-5536?
Cisco Secure Access Control System (ACS) does not properly implement an incoming-packet firewall rule, which allows remote attackers to cause a denial of service (process crash) via a flood of crafted packets, aka Bug ID CSCui51521.
How severe is CVE-2013-5536?
Severity scoring for CVE-2013-5536 is pending analysis. The EPSS model estimates a 1.50% probability of exploitation in the next 30 days.
How do I fix CVE-2013-5536?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-5530The web framework in Cisco Identity Services Engine (ISE) 1.…
- CVE-2013-5531Cisco Identity Services Engine (ISE) 1.x before 1.1.1 allows…
- CVE-2013-5532Buffer overflow in the web-application interface on Cisco 99…
- CVE-2013-5533The image-upgrade functionality on Cisco 9900 Unified IP pho…
- CVE-2013-5534Directory traversal vulnerability in the attachment service …
- CVE-2013-5535The analytics page on Cisco Video Surveillance 4000 IP camer…
- CVE-2013-5537The web framework on Cisco Web Security Appliance (WSA), Ema…
- CVE-2013-5538The Sponsor Portal in Cisco Identity Services Engine (ISE) u…
- CVE-2013-5539The upload-dialog implementation in Cisco Identity Services …
- CVE-2013-5540The file-upload feature in Cisco Identity Services Engine (I…
- CVE-2013-5541Cross-site scripting (XSS) vulnerability in the file-upload …
- CVE-2013-5542Cisco Adaptive Security Appliance (ASA) Software 8.4 before …
Are you affected by CVE-2013-5536?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
