{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T10:02:04Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"Cisco-SA-20130913-CVE-2013-5492","slug":"cisco-sa-20130913-cve-2013-5492","vendor":"Cisco","title":"Cisco SocialMiner administration.jsp HTTP Information Disclosure Vulnerability ","summary":"A vulnerability in the administration.jsp page of Cisco SocialMiner could allow an unauthenticated, remote attacker to access sensitive information. The vulnerability exists because the affected software implements an insecure HTTP connection between a Cisco SocialMiner client and server when handling the administration.jsp page. An attacker could exploit this vulnerability with commonly available tools by intercepting HTTP traffic between the Cisco SocialMiner client and server. A successful exploit could allow the attacker to access sensitive information related to the authenticated user of the affected software. Cisco has confirmed the vulnerability in a security notice and released software updates. To exploit this vulnerability, an attacker must be in the position to capture HTTP traffic between a SocialMiner client and server. Typically, these systems would reside on trusted, internal networks, in which an attacker would likely need access. This access requirement decreases the likelihood of a successful exploit.","severity":"Medium","published_at":"2013-09-13T13:39:07Z","updated_at":"2013-09-13T13:39:07Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20130913-CVE-2013-5492","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/Cisco-SA-20130913-CVE-2013-5492/csaf/Cisco-SA-20130913-CVE-2013-5492.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":1,"public_evidence_count":1,"kev_count":0,"highest_epss":0.01173},"cves":[{"id":"CVE-2013-5492","kev":false,"epss":{"score":0.01173,"percentile":0.6402,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"}}],"public_evidence":[{"product":{"name":"Cisco SocialMiner","slug":"cisco-socialminer","vendor":"Cisco"},"cve":{"id":"CVE-2013-5492"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:56:46Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco SocialMiner","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"epss":{"score":0.01173,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"},"published_at":"2013-09-13T13:39:07Z","updated_at":"2013-09-13T13:39:07Z","advisory_updated_at":"2013-09-13T13:39:07Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20130913-CVE-2013-5492","row_display_order":1}]}