CVE-2013-3443: Cisco Wide Area Application Services

High severity, CVSS 10.0. EPSS: 6% chance of exploitation in the next 30 days.

The web service framework in Cisco WAAS Software 4.x and 5.x before 5.0.3e, 5.1.x before 5.1.1c, and 5.2.x before 5.2.1 in a Central Manager (CM) configuration allows remote attackers to execute arbitrary code via a crafted POST request, aka Bug ID CSCuh26626.

Affected products

  • Cisco Wide Area Application Services: version 4.0.1 only; version 4.0.3 only; version 4.0.5 only; version 4.0.7 only; version 4.0.9 only; version 4.0.11 only; …

Published 2013-08-01. Last modified 2026-06-16.