CVE-2013-5511: Cisco Adaptive Security Appliance Software

High severity, CVSS 10.0. EPSS: 2.3% chance of exploitation in the next 30 days.

The Adaptive Security Device Management (ASDM) remote-management feature in Cisco Adaptive Security Appliance (ASA) Software 8.2.x before 8.2(5.46), 8.3.x before 8.3(2.39), 8.4.x before 8.4(6), 8.5.x before 8.5(1.18), 8.6.x before 8.6(1.12), 8.7.x before 8.7(1.7), 9.0.x before 9.0(3.1), and 9.1.x before 9.1(2.6) does not properly implement the authentication-certificate option, which allows remote attackers to bypass authentication via a TCP session to an ASDM interface, aka Bug ID CSCuh44815.

Affected products

  • Cisco Adaptive Security Appliance Software: version 8.2 only; version 8.2(1) only; version 8.2(2) only; version 8.2(3) only; version 8.2(3.9) only; version 8.2(4) only; …

Published 2013-10-13. Last modified 2026-06-16.