Lucene search

K
cveMitreCVE-2013-5578
HistoryAug 25, 2013 - 3:27 a.m.

CVE-2013-5578

2013-08-2503:27:33
CWE-119
mitre
web.nvd.nist.gov
22
cve-2013-5578
nvd
buffer overflow
wingraphvizlib
neato
activex control
wingraphviz.dll
staruml
remote code execution

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.079

Percentile

94.4%

Buffer overflow in the ToDot method in the WINGRAPHVIZLib.NEATO ActiveX control in WinGraphviz.dll in StarUML allows remote attackers to execute arbitrary code via a long argument.

Affected configurations

Nvd
Node
starumlstarumlMatch5.0.2.1570
VendorProductVersionCPE
starumlstaruml5.0.2.1570cpe:2.3:a:staruml:staruml:5.0.2.1570:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.079

Percentile

94.4%

Related for CVE-2013-5578