CVE-2013-1199: Cisco Adaptive Security Appliance

Medium severity, CVSS 4.9. EPSS: 0.9% chance of exploitation in the next 30 days.

Race condition in the CIFS implementation in the rewriter module in the Clientless SSL VPN component on Cisco Adaptive Security Appliances (ASA) devices allows remote authenticated users to cause a denial of service (device reload) by accessing resources within multiple sessions, aka Bug ID CSCub58996.

Affected products

  • Cisco Adaptive Security Appliance
  • Cisco Adaptive Security Appliance Clientless SSL VPN: affected versions not specified
  • Cisco Adaptive Security Appliance Software: affected versions not specified

Published 2013-04-18. Last modified 2026-06-16.