CVE-2018-0101

CRITICAL ⚠ Exploit

A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the ...

Affects 2 products across 1 vendor.

BCS9.5
CVSS 3.010.0
EPSS86.8%
Percentile100th
PatchUnknown
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, can impact systems beyond the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
CWE Weakness Definitions
CWE-415: CWE-415
◆ AI Analysis — automated analysis, not human-reviewed

A critical vulnerability in the SSL VPN functionality of Cisco ASA Software allows unauthenticated remote attackers to cause a system reload or execute code due to improper memory management.

BSID: BS-2018-GLOBAL-206076-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2018-0101?
A critical vulnerability in the SSL VPN functionality of Cisco ASA Software allows unauthenticated remote attackers to cause a system reload or execute code due to improper memory management.
What is the CVSS score for CVE-2018-0101?
CVE-2018-0101 has CVSS 10.0 (Critical). Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H. EPSS: 86.8%.
Is CVE-2018-0101 actively exploited?
Public exploit available for CVE-2018-0101. Exploitation risk elevated.
How do I remediate CVE-2018-0101?
Priority: IMMEDIATE. Advisory: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180129-asa1 PSIRT: [email protected]
What systems are affected by CVE-2018-0101?
CVE-2018-0101 affects: Cisco, Cisco.
Vulnerability Details
CVE IDCVE-2018-0101
BSIDBS-2018-GLOBAL-206076-C BreachSpider Global ID
CVSS VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Published2018-01-29
Last Modified2026-08-11
ICS Relevance65%
Weakness (CWE)
Domains
NETWORK-INFRA
SourceNVD
Official Description

A vulnerability in the Secure Sockets Layer (SSL) VPN functionality of the Cisco Adaptive Security Appliance (ASA) Software could allow an unauthenticated, remote attacker to cause a reload of the affected system or to remotely execute code. The vulnerability is due to an attempt to double free a region of memory when the webvpn feature is enabled on the Cisco ASA device. An attacker could exploit this vulnerability by sending multiple, crafted XML packets to a webvpn-configured interface on the affected system. An exploit could allow the attacker to execute arbitrary code and obtain full control of the system, or cause a reload of the affected device. This vulnerability affects Cisco ASA Software that is running on the following Cisco products: 3000 Series Industrial Security Appliance (ISA), ASA 5500 Series Adaptive Security Appliances, ASA 5500-X Series Next-Generation Firewalls, ASA Services Module for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers, ASA 1000V Cloud Firewall, Adaptive Security Virtual Appliance (ASAv), Firepower 2100 Series Security Appliance, Firepower 4110 Security Appliance, Firepower 9300 ASA Security Module, Firepower Threat Defense Software (FTD). Cisco Bug IDs: CSCvg35618.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability arises from an attempt to double free a memory region when the webvpn feature is enabled, potentially allowing attackers to exploit this condition to execute arbitrary code or cause a denial of service.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductAffected Versions
Cisco Adaptive Security Appliance Software < 9.1.7.23 ≥ 9.2.0, < 9.2.4.27 ≥ 9.3.0, < 9.4.4.16 ≥ 9.5.0, < 9.6.4.3 ≥ 9.7.0, < 9.7.1.21 ≥ 9.8.0, < 9.8.2.20
+1 more≥ 9.9.0, < 9.9.1.2
Cisco Firepower Threat Defense 6.0.0 6.0.1 6.1.0 6.2.0 6.2.1 6.2.2
Remediation
View Vendor Advisory →

Remediation Priority: IMMEDIATE

Vendor PSIRT: [email protected]
Threat Intelligence
● Threat Intelligence Validated: October 2026 | Threat Age: 3171 Days
CISA known-exploitedNot in KEV catalog
Public Exploit⚠ Available — Reference
PoC CodeNot confirmed
AI Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
Related CVEs affecting Cisco
CVE-2007-2036 10.0 The SNMP implementation in the Cisco Wireless LAN Controller (WLC) before 200... CVE-2018-0222 10.0 A vulnerability in Cisco Digital Network Architecture (DNA) Center could allo... CVE-2021-1388 10.0 A vulnerability in an API endpoint of Cisco ACI Multi-Site Orchestrator (MSO)... CVE-2022-20827 10.0 Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV3... CVE-2008-1157 10.0 Cisco CiscoWorks Internetwork Performance Monitor (IPM) 2.6 creates a process...
View all Cisco CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Create a free account →