2024-11-22 19:15:24 +00:00

97 lines
3.2 KiB
JSON

{
"id": "CVE-2013-1609",
"sourceIdentifier": "secure@symantec.com",
"published": "2013-03-26T14:07:27.770",
"lastModified": "2024-11-21T01:49:59.590",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Multiple unquoted Windows search path vulnerabilities in the (1) File Collector and (2) File PlaceHolder services in Symantec Enterprise Vault (EV) for File System Archiving before 9.0.4 and 10.x before 10.0.1 allow local users to gain privileges via a Trojan horse program."
},
{
"lang": "es",
"value": "M\u00faltiples vulnerabilidades de ruta no confiable en la b\u00fasqueda no literal de Windows en los servicios (1) File Collector y (2) File PlaceHolder en Symantec Enterprise Vault (EV) para File System Archiving anterior a v9.0.4 y v10.x anterior a v10.0.1, permite a usuarios locales obtener privilegios a trav\u00e9s de un programa tipo troyano."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:S/C:C/I:C/A:C",
"baseScore": 6.8,
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "SINGLE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.1,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:symantec:enterprise_vault_for_file_system_archiving:*:*:*:*:*:*:*:*",
"versionEndIncluding": "9.0.3",
"matchCriteriaId": "36C5BBCC-B0C1-4B90-B2DE-5457419CA88A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:symantec:enterprise_vault_for_file_system_archiving:10.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "E7A76C69-5D78-4287-8E88-D633513CE047"
}
]
}
]
}
],
"references": [
{
"url": "http://www.securityfocus.com/bid/58617",
"source": "secure@symantec.com"
},
{
"url": "http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20130321_00",
"source": "secure@symantec.com"
},
{
"url": "http://www.securityfocus.com/bid/58617",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20130321_00",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}