Lucene search

K
cveJpcertCVE-2013-4713
HistoryNov 01, 2013 - 2:55 a.m.

CVE-2013-4713

2013-11-0102:55:04
CWE-79
jpcert
web.nvd.nist.gov
18
cve-2013-4713
cross-site scripting
xss
i-o data device
rockdisk
firmware
remote authenticated users
web script
html
security vulnerability

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

4.9

Confidence

High

EPSS

0.001

Percentile

38.9%

Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

Affected configurations

Nvd
Node
iodatarockdisk_firmwareRange1.05c-2.0.3
OR
iodatarockdisk_firmwareMatch1.03v3-1.13
OR
iodatarockdisk_firmwareMatch1.03w-1.14
OR
iodatarockdisk_firmwareMatch1.03y-1.16beta
OR
iodatarockdisk_firmwareMatch1.04a-1.2
OR
iodatarockdisk_firmwareMatch1.04b-1.21
OR
iodatarockdisk_firmwareMatch1.04d-2.0.1
OR
iodatarockdisk_firmwareMatch1.04m-2.0.1
OR
iodatarockdisk_firmwareMatch1.04n-2.0.1
OR
iodatarockdisk_firmwareMatch1.04r3-2.0.1
OR
iodatarockdisk_firmwareMatch1.04t-2.0.2
AND
iodatarockdiskMatch-
VendorProductVersionCPE
iodatarockdisk_firmware*cpe:2.3:o:iodata:rockdisk_firmware:*:*:*:*:*:*:*:*
iodatarockdisk_firmware1.03v3-1.13cpe:2.3:o:iodata:rockdisk_firmware:1.03v3-1.13:*:*:*:*:*:*:*
iodatarockdisk_firmware1.03w-1.14cpe:2.3:o:iodata:rockdisk_firmware:1.03w-1.14:*:*:*:*:*:*:*
iodatarockdisk_firmware1.03y-1.16cpe:2.3:o:iodata:rockdisk_firmware:1.03y-1.16:beta:*:*:*:*:*:*
iodatarockdisk_firmware1.04a-1.2cpe:2.3:o:iodata:rockdisk_firmware:1.04a-1.2:*:*:*:*:*:*:*
iodatarockdisk_firmware1.04b-1.21cpe:2.3:o:iodata:rockdisk_firmware:1.04b-1.21:*:*:*:*:*:*:*
iodatarockdisk_firmware1.04d-2.0.1cpe:2.3:o:iodata:rockdisk_firmware:1.04d-2.0.1:*:*:*:*:*:*:*
iodatarockdisk_firmware1.04m-2.0.1cpe:2.3:o:iodata:rockdisk_firmware:1.04m-2.0.1:*:*:*:*:*:*:*
iodatarockdisk_firmware1.04n-2.0.1cpe:2.3:o:iodata:rockdisk_firmware:1.04n-2.0.1:*:*:*:*:*:*:*
iodatarockdisk_firmware1.04r3-2.0.1cpe:2.3:o:iodata:rockdisk_firmware:1.04r3-2.0.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

3.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:S/C:N/I:P/A:N

AI Score

4.9

Confidence

High

EPSS

0.001

Percentile

38.9%

Related for CVE-2013-4713