CVE-2013-0096

Writer in Microsoft Windows Essentials 2011 and 2012 allows remote attackers to bypass proxy settings and overwrite arbitrary files via crafted URL parameters, aka "Windows Essentials Improper URI Handling Vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:windows_essentials:2011:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:windows_essentials:2012:*:*:*:*:*:*:*

History

21 Nov 2024, 01:46

Type Values Removed Values Added
References () http://www.us-cert.gov/ncas/alerts/TA13-134A - Third Party Advisory, US Government Resource () http://www.us-cert.gov/ncas/alerts/TA13-134A - Third Party Advisory, US Government Resource
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-045 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-045 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16204 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16204 -

Information

Published : 2013-05-15 03:36

Updated : 2024-11-21 01:46


NVD link : CVE-2013-0096

Mitre link : CVE-2013-0096

CVE.ORG link : CVE-2013-0096


JSON object : View

Products Affected

microsoft

  • windows_essentials
CWE
CWE-264

Permissions, Privileges, and Access Controls