Lucene search

K
cve[email protected]CVE-2013-3156
HistorySep 11, 2013 - 2:03 p.m.

CVE-2013-3156

2013-09-1114:03:48
CWE-119
web.nvd.nist.gov
23
cve-2013-3156
microsoft access
remote code execution
memory corruption
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

High

0.872 High

EPSS

Percentile

98.6%

Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Access file, aka “Access File Format Memory Corruption Vulnerability.”

Affected configurations

NVD
Node
microsoftaccessMatch2007sp3
OR
microsoftaccessMatch2010sp1x64
OR
microsoftaccessMatch2010sp1x86
OR
microsoftaccessMatch2010sp2x64
OR
microsoftaccessMatch2010sp2x86
OR
microsoftaccessMatch2013x64
OR
microsoftaccessMatch2013x86

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

High

0.872 High

EPSS

Percentile

98.6%