CVE-2013-5515: Cisco Adaptive Security Appliance Software

High severity, CVSS 7.8. EPSS: 1.3% chance of exploitation in the next 30 days.

The Clientless SSL VPN feature in Cisco Adaptive Security Appliance (ASA) Software 8.x before 8.2(5.44), 8.3.x before 8.3(2.39), 8.4.x before 8.4(5.7), 8.6.x before 8.6(1.12), 9.0.x before 9.0(2.6), and 9.1.x before 9.1(1.7) allows remote attackers to cause a denial of service (device reload) via crafted HTTPS requests, aka Bug ID CSCua22709.

Affected products

  • Cisco Adaptive Security Appliance Software: version 8.0 only; version 8.0(2) only; version 8.0(3) only; version 8.0(4) only; version 8.0(5) only; version 8.0(5.28) only; …

Published 2013-10-13. Last modified 2026-06-16.