CVE-2013-1195: Cisco Adaptive Security Appliance Software

Medium severity, CVSS 5.0. EPSS: 1.8% chance of exploitation in the next 30 days.

The time-based ACL implementation on Cisco Adaptive Security Appliances (ASA) devices, and in Cisco Firewall Services Module (FWSM), does not properly handle periodic statements for the time-range command, which allows remote attackers to bypass intended access restrictions by sending network traffic during denied time periods, aka Bug IDs CSCuf79091 and CSCug45850.

Affected products

  • Cisco Adaptive Security Appliance Software: affected versions not specified
  • Cisco Firewall Services Module: any version

Published 2013-04-24. Last modified 2026-06-16.