{ "id": "CVE-2013-2413", "sourceIdentifier": "secalert_us@oracle.com", "published": "2013-04-17T17:55:07.327", "lastModified": "2024-11-21T01:51:38.493", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in the Siebel Enterprise Application Integration component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Web Services." }, { "lang": "es", "value": "Vulnerabilidad no especificada en el componente de integraci\u00f3n de aplicaciones empresariales de Siebel de Oracle Siebel CRM v8.1.1 y v8.2.2 permite a usuarios remotos autenticados afectan a la confidencialidad y la integridad a trav\u00e9s de vectores desconocidos relacionados con Web Services." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:S/C:P/I:P/A:N", "baseScore": 4.9, "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "SINGLE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "NONE" }, "baseSeverity": "MEDIUM", "exploitabilityScore": 6.8, "impactScore": 4.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:oracle:siebel_crm:8.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "07BB8F43-D4BB-4ED4-891F-69DADC8E59CA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:oracle:siebel_crm:8.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "F55FFD29-ABCA-4530-83DA-468A71D4E9BF" } ] } ] } ], "references": [ { "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2013:150", "source": "secalert_us@oracle.com" }, { "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html", "source": "secalert_us@oracle.com", "tags": [ "Vendor Advisory" ] }, { "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2013:150", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] } ] }