Lucene search

K
cveMicrosoftCVE-2013-1313
HistoryFeb 13, 2013 - 12:04 p.m.

CVE-2013-1313

2013-02-1312:04:14
CWE-399
microsoft
web.nvd.nist.gov
119
cve-2013-1313
ole automation
remote code execution
windows xp sp3
nvd
memory allocation
rtf document

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.941

Percentile

99.2%

Object Linking and Embedding (OLE) Automation in Microsoft Windows XP SP3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a crafted RTF document, aka “OLE Automation Remote Code Execution Vulnerability.”

Affected configurations

Nvd
Node
microsoftwindows_xpsp3
VendorProductVersionCPE
microsoftwindows_xp*cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.941

Percentile

99.2%