Lucene search

K
cveRedhatCVE-2013-0230
HistoryJan 31, 2013 - 9:55 p.m.

CVE-2013-0230

2013-01-3121:55:01
CWE-119
redhat
web.nvd.nist.gov
65
cve-2013-0230
stack-based buffer overflow
executesoapaction function
miniupnpd 1.0
http service
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.859

Percentile

98.6%

Stack-based buffer overflow in the ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote attackers to execute arbitrary code via a long quoted method.

Affected configurations

Nvd
Node
miniupnp_projectminiupnpdMatch1.0
VendorProductVersionCPE
miniupnp_projectminiupnpd1.0cpe:/a:miniupnp_project:miniupnpd:1.0:::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8

Confidence

Low

EPSS

0.859

Percentile

98.6%