Lucene search

K
nvd[email protected]NVD:CVE-2013-5559
HistoryNov 04, 2013 - 4:55 p.m.

CVE-2013-5559

2013-11-0416:55:05
CWE-119
web.nvd.nist.gov
5

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

High

EPSS

0.833

Percentile

98.5%

Buffer overflow in the Active Template Library (ATL) framework in the VPNAPI COM module in Cisco AnyConnect Secure Mobility Client 2.x allows user-assisted remote attackers to execute arbitrary code via a crafted HTML document, aka Bug ID CSCuj58139.

Affected configurations

Nvd
Node
ciscoanyconnect_secure_mobility_clientMatch2.0
OR
ciscoanyconnect_secure_mobility_clientMatch2.1
OR
ciscoanyconnect_secure_mobility_clientMatch2.2
OR
ciscoanyconnect_secure_mobility_clientMatch2.2.128
OR
ciscoanyconnect_secure_mobility_clientMatch2.2.133
OR
ciscoanyconnect_secure_mobility_clientMatch2.2.136
OR
ciscoanyconnect_secure_mobility_clientMatch2.2.140
OR
ciscoanyconnect_secure_mobility_clientMatch2.3
OR
ciscoanyconnect_secure_mobility_clientMatch2.3.185
OR
ciscoanyconnect_secure_mobility_clientMatch2.3.254
OR
ciscoanyconnect_secure_mobility_clientMatch2.3.2016
OR
ciscoanyconnect_secure_mobility_clientMatch2.4
OR
ciscoanyconnect_secure_mobility_clientMatch2.4symbian_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.0202
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.1012
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.4004iphone_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.4014iphone_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.5004symbian_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.7030android
OR
ciscoanyconnect_secure_mobility_clientMatch2.4.7073android
OR
ciscoanyconnect_secure_mobility_clientMatch2.5
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.0217
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.1025
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2001
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2006
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2010
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2011
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2014
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2017
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2018
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.2019
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.3041
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.3046
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.3051
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.3054
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.3055
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5112iphone_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5116android
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5118android
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5125android
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5130iphone_os
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.5131android
OR
ciscoanyconnect_secure_mobility_clientMatch2.5.6005
VendorProductVersionCPE
ciscoanyconnect_secure_mobility_client2.0cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.0:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.1cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.1:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.2cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.2.128cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.128:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.2.133cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.133:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.2.136cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.136:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.2.140cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.2.140:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.3cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.3.185cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.185:*:*:*:*:*:*:*
ciscoanyconnect_secure_mobility_client2.3.254cpe:2.3:a:cisco:anyconnect_secure_mobility_client:2.3.254:*:*:*:*:*:*:*
Rows per page:
1-10 of 431

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

High

EPSS

0.833

Percentile

98.5%

Related for NVD:CVE-2013-5559