CVE-2013-5559: Buffer Overflow
Buffer overflow in the Active Template Library (ATL) framework in the VPNAPI COM module in Cisco AnyConnect Secure Mobility Client 2.x allows user-assisted remote attackers to execute arbitrary code via a crafted HTML document, aka Bug ID CSCuj58139.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5559?
CVE-2013-5559 has a severity rating of critical due to its potential for remote code execution.
How do I fix CVE-2013-5559?
To fix CVE-2013-5559, update the Cisco AnyConnect Secure Mobility Client to the latest version provided by Cisco.
What types of devices are affected by CVE-2013-5559?
CVE-2013-5559 affects multiple versions of the Cisco AnyConnect Secure Mobility Client across various platforms including Windows, macOS, and mobile operating systems.
Can CVE-2013-5559 be exploited without user interaction?
CVE-2013-5559 requires user interaction, as it is triggered by opening a crafted HTML document.
What is the impact of CVE-2013-5559 if exploited?
If successfully exploited, CVE-2013-5559 allows attackers to execute arbitrary code on the affected system.