2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2010-0133" ,
"sourceIdentifier" : "PSIRT-CNA@flexerasoftware.com" ,
"published" : "2010-08-17T20:00:02.657" ,
"lastModified" : "2013-02-07T04:27:00.093" ,
"vulnStatus" : "Modified" ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "Multiple stack-based buffer overflows in the SpreadSheet Lotus 123 reader (wkssr.dll) in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allow remote attackers to execute arbitrary code via unspecified vectors related to \"certain records.\""
} ,
{
"lang" : "es" ,
"value" : "M\u00faltiples desbordamientos de b\u00fafer basados en pila en lector SpreadSheet Lotus 123 (wkssr.dll) de Autonomy KeyView v10.4 y v10.9, como el usado en IBM, Symantec, y otros productos, permite a atacantes remotos ejecutar c\u00f3digo a su elecci\u00f3n a trav\u00e9s de vectores no especificados relacionados con \"ciertos registros\"."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:M/Au:N/C:C/I:C/A:C" ,
"accessVector" : "NETWORK" ,
"accessComplexity" : "MEDIUM" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "COMPLETE" ,
"integrityImpact" : "COMPLETE" ,
"availabilityImpact" : "COMPLETE" ,
"baseScore" : 9.3
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 8.6 ,
"impactScore" : 10.0 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : true
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-119"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_export_sdk:10.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F588C397-FB3F-4A04-A015-B6F6D9C3B994"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_export_sdk:10.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C456319D-6699-4970-A146-6E52DD285D7F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_filter_sdk:10.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C558D1E3-4C6B-4C00-A415-5B9E343073D8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_filter_sdk:10.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "706571F3-D347-4760-A55B-4F465DAFCBFF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_viewer_sdk:10.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4056FDC9-27A4-41D9-9C84-B50A66F30161"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:autonomy:keyview_viewer_sdk:10.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "73ECC62B-CED2-4401-A2F7-8E714D20D111"
}
]
}
]
}
] ,
"references" : [
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/secunia_research/2010-28/" ,
"source" : "PSIRT-CNA@flexerasoftware.com" ,
"tags" : [
"Vendor Advisory"
]
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://www-01.ibm.com/support/docview.wss?uid=swg21440812" ,
"source" : "PSIRT-CNA@flexerasoftware.com"
} ,
{
"url" : "http://www.securityfocus.com/bid/41928" ,
"source" : "PSIRT-CNA@flexerasoftware.com"
} ,
{
"url" : "http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=2010&suid=20100727_01" ,
"source" : "PSIRT-CNA@flexerasoftware.com"
}
]
}