CVE Intelligence
Skip to main content

Month report

January 2013

Rolled up 2026-08-09 20:45 from 370,700 CVE records

439 CVEs published, +39.8% on the same month last year. 6 rated critical, 0 listed by CISA as exploited. rockwell automation led with 8; the most common weakness class was CWE-284 (5). redhat climbed 2 places, the largest move. 4 vendors ranked for the first time.

Published

439

+72.2%on the previous month

Critical / high

6 / 8

of the 20 scored

Medium / low

5 / 1

the rest of the scored bands

Added to CISA KEV

0

listed as exploited this month

Public exploit

72

exploit code indexed publicly

Scanner template

0

0% of the month

Publication to KEV

How long before CISA listed them

6 published this month and listed since — not the 0 listed during it.

Median days to listing

3344

from publication to CISA's date added

Listed within 7 days

0%

of the 6

Listed within 30 days

0%

of the 6

Weakness × vendor

Where the two overlap

CVEs carrying both. Each row is shaded against its own worst class.
VendorCWE-284CWE-287CWE-119CWE-23CWE-200CWE-266CWE-276CWE-280
rockwell automation3221
3s smart software solutions11
festo11
redhat11
specview1

Vendors

Ranked by distinct CVEs this month

Δ is the move against last month's rank.
Vendors ranked by distinct CVEs published in 2013-01, sorted by CVEs descending
#VendorTop products
1rockwell automation811756 enbt 1756 eweb 1768 enbt 1768 eweb communication modules (8) · 1788 enbt flexlogix adapter (8) · 1794 aentr flex i o ethernet ip adapter (8)new
23s smart software solutions22cecx x c1 modular master controller with codesys (2) · cecx x m1 modular controller with codesys and softmotion (2) · codesys (2)new
3festo22cecx x c1 modular master controller with codesys (2) · cecx x m1 modular controller with codesys and softmotion (2) · codesys (2)new
4redhat2red hat jboss enterprise application platform 6 0 (2) · red hat jboss enterprise application platform 6 for rhel 5 (2) · red hat jboss enterprise application platform 6 for rhel 6 (2)↑2
5specview11specview (1)new

One CVE is counted once per vendor, product or weakness class it lists, so a ranking column sums to more than the month's total. Only the month's top 100 keys per dimension are stored. The KEV column counts CVEs published in 2013-01 that are on the CISA KEV catalog today. The 0 in the headline is what CISA listed during the month, whenever those CVEs were published. All 5 ranked vendors are listed; a zero count renders as a dot.

Weaknesses

CWE classes by distinct CVEs

  • 1CWE-28452 critical·
  • 2CWE-28732 critical·
  • 3CWE-11920 critical·
  • 4CWE-2321 criticalnew
  • 5CWE-20010 critical·
  • 6CWE-26610 criticalnew
  • 7CWE-27611 critical·
  • 8CWE-28010 criticalnew
  • 9CWE-69310 criticalnew

One CVE is counted once per vendor, product or weakness class it lists, so a ranking column sums to more than the month's total. Only the month's top 100 keys per dimension are stored.