← Vulnerability feed

Vulnerability record · CVE-2013-6329 · published 17 December 2013

CVE-2013-6329: Ibm content manager ondemand for multiplatforms vulnerability

Ibm · Content Manager Ondemand For Multiplatforms

IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption of an SSLv2 session.

7.8 CVSS 2.0 High EPSS 3.2% · top 12.5% CWE-310 · CWE-310
7.8CVSS 2.0 base score
3.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
16References
17 Jun 2026Last modified by NVD

Description

IBM Global Security Kit (aka GSKit), as used in Content Manager OnDemand 8.5 and 9.0 and other products, allows remote attackers to cause a denial of service via a crafted handshake during resumption of an SSLv2 session.

AV:N/AC:L/Au:N/C:N/I:N/A:C

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-6329 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.1CVE-2016-3028Ibm security access manager os command injection vulnerabilityIBM Security Access Manager for Web 7.0 before IF2 and 8.0 before 8.0.1.4 IF3 and Security Access Manager 9.0 before 9.0.1.0 IF5 allow remote authent…EPSS 3.5%7.5CVE-2015-4963Ibm security access manager for web vulnerabilityIBM Security Access Manager for Web 7.x before 7.0.0.16 and 8.x before 8.0.1.3 mishandles WebSEAL HTTPTransformation requests, which allows remote at…EPSS 3.3%7.5CVE-2012-2203Ibm global security kit permissions and access controls vulnerabilityIBM Global Security Kit (aka GSKit) before 8.0.14.22, as used in IBM Rational Directory Server, IBM Tivoli Directory Server, and other products, uses…EPSS 1.6%7.1CVE-2013-6747Ibm global security kit improper input validation vulnerabilityIBM GSKit 7.x before 7.0.4.48 and 8.x before 8.0.50.16, as used in IBM Security Directory Server (ISDS) and Tivoli Directory Server (TDS), allows rem…EPSS 2.2%6.8CVE-2014-6077Ibm security access manager for web cross-site request forgery vulnerabilityCross-site request forgery (CSRF) vulnerability in IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x be…EPSS 0.63%6.5CVE-2014-6080Ibm security access manager for mobile sql injection vulnerabilitySQL injection vulnerability in IBM Security Access Manager for Mobile 8.x before 8.0.1 and Security Access Manager for Web 7.x before 7.0.0 FP10 and …EPSS 1.0%6.1CVE-2017-1489Ibm tivoli access manager for e-business open redirect vulnerabilityIBM Security Access Manager 6.1, 7.0, 8.0, and 9.0 e-community configurations may be affected by a redirect vulnerability. ECSSO Master Authenticatio…EPSS 1.2%6.1CVE-2016-3018Ibm security access manager cross-site scripting vulnerabilityIBM Security Access Manager for Web is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the …EPSS 0.78%

Source: NIST National Vulnerability Database (record CVE-2013-6329), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.