AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-5537

HIGH · CVSS 7.8 EPSS 1.33%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-10-24 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Cisco. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2013-5537
Severity
HIGH
CVSS
7.8
EPSS
1.33%
Cisco

Original NVD Description

The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does not properly manage the state of HTTP and HTTPS sessions, which allows remote attackers to cause a denial of service (management GUI outage) via multiple TCP connections, aka Bug IDs CSCuj59411, CSCuf89818, and CSCuh05635.