VDB
CVE-2013-3590
CVE-2013-3590
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Unrestricted file upload vulnerability in admin/uploadImage.html in SearchBlox before 7.5 build 1 allows remote attackers to execute arbitrary code by uploading an executable file with the image/jpeg content type, and then accessing this file via unspecified vectors, as demonstrated by access to a JSP file.
EPSS 3.76% · 88.3th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
3.76%
88.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| searchblox | searchblox | 7.0, 6.2, 6.4 |
| n/a | n/a | * |
Timeline
- Aug 28, 2013 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 16, 2023 EPSS Score