CVE-2013-5506

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
13/10/2013
Last modified:
11/04/2025

Description

The authorization functionality in Cisco Firewall Services Module (FWSM) 3.1.x and 3.2.x before 3.2(25) and 4.x before 4.1(13), when multiple-context mode is enabled, allows local users to read or modify any context's configuration via unspecified commands, aka Bug ID CSCue46080.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:firewall_services_module_software:3.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(2\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(3\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(4\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(5\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(6\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(7\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(8\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(9\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(10\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(11\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(12\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(13\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(14\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:firewall_services_module_software:3.1\(15\):*:*:*:*:*:*:*