Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2013-0096 | First vendor Publication | 2013-05-14 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 6.8 | Attack Range | Network |
Cvss Impact Score | 6.4 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Writer in Microsoft Windows Essentials 2011 and 2012 allows remote attackers to bypass proxy settings and overwrite arbitrary files via crafted URL parameters, aka "Windows Essentials Improper URI Handling Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0096 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-264 | Permissions, Privileges, and Access Controls |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:16204 | |||
Oval ID: | oval:org.mitre.oval:def:16204 | ||
Title: | Vulnerability in Windows Essentials Could Allow Information Disclosure - MS13-045 | ||
Description: | Writer in Microsoft Windows Essentials 2011 and 2012 allows remote attackers to bypass proxy settings and overwrite arbitrary files via crafted URL parameters, aka "Windows Essentials Improper URI Handling Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2013-0096 | Version: | 3 |
Platform(s): | Microsoft Windows 7 Microsoft Windows 8 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2012 | Product(s): | Microsoft Windows Essentials 2012 Microsoft Windows Essentials 2011 |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 2 |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Windows Live Writer wlw protocol handler information disclosure att... RuleID : 26623 - Revision : 4 - Type : BROWSER-IE |
2014-01-10 | Microsoft Windows Live Writer wlw protocol handler information disclosure att... RuleID : 26622 - Revision : 4 - Type : BROWSER-IE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2013-05-15 | Name : An application on the remote Windows host has an information disclosure vulne... File : smb_nt_ms13-045.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 12:32:57 |
|
2021-05-04 12:23:13 |
|
2021-04-22 01:27:45 |
|
2020-05-23 00:35:38 |
|
2018-10-13 05:18:37 |
|
2017-09-19 09:25:39 |
|
2016-09-30 01:06:12 |
|
2014-02-17 11:15:14 |
|
2014-01-19 21:29:05 |
|
2013-12-31 13:19:05 |
|
2013-11-04 21:24:44 |
|
2013-05-16 17:02:58 |
|
2013-05-15 13:18:37 |
|