VDB

CVE-2013-5912

CVE-2013-5912 PUBLISHED CVSS 10 CRITICAL

VhttpdMgr in Thomson Reuters Velocity Analytics Vhayu Analytic Server 6.94 build 2995 allows remote attackers to execute arbitrary code via a URL in the fileName parameter during an importFile action.

EPSS 34.62% · 97.1th percentile

Risk Scores

CVSS 2.0
10
EPSS Score
34.62%
97.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
thomsonreutersvelocity_analytics_vhayu_analytic_server6.94

Timeline

  • Nov 22, 2013 PoC Published
  • Nov 28, 2013 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 3, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Feb 8, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 2, 2023 EPSS Score
  • Jul 16, 2023 EPSS Score
  • Sep 7, 2023 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›