CVE-2013-2106: Debian Linux

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

webauth before 4.6.1 has authentication credential disclosure

Affected products

  • Debian Debian Linux: version 8.0 only; version 9.0 only; version 10.0 only
  • Stanford Webauth: before 4.6.1 (fixed in 4.6.1)

Published 2019-12-03. Last modified 2026-06-16.