CVE-2013-5559: Cisco AnyConnect Secure Mobility Client
Medium severity, CVSS 6.8. EPSS: 2% chance of exploitation in the next 30 days.
Buffer overflow in the Active Template Library (ATL) framework in the VPNAPI COM module in Cisco AnyConnect Secure Mobility Client 2.x allows user-assisted remote attackers to execute arbitrary code via a crafted HTML document, aka Bug ID CSCuj58139.
Affected products
- Cisco AnyConnect Secure Mobility Client: version 2.0 only; version 2.1 only; version 2.2 only; version 2.2.128 only; version 2.2.133 only; version 2.2.136 only; …
Published 2013-11-04. Last modified 2026-06-16.