CVE-2013-4211

A Code Execution Vulnerability exists in OpenX Ad Server 2.8.10 due to a backdoor in flowplayer-3.1.1.min.js library, which could let a remote malicious user execute arbitrary PHP code
References
Link Resource
http://www.exploit-db.com/exploits/27529 Exploit Third Party Advisory VDB Entry
http://www.openwall.com/lists/oss-security/2013/08/07/2 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/61650 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/86259 Third Party Advisory VDB Entry
https://packetstormsecurity.com/files/cve/CVE-2013-4211 Exploit Third Party Advisory VDB Entry
http://www.exploit-db.com/exploits/27529 Exploit Third Party Advisory VDB Entry
http://www.openwall.com/lists/oss-security/2013/08/07/2 Mailing List Third Party Advisory
http://www.securityfocus.com/bid/61650 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/86259 Third Party Advisory VDB Entry
https://packetstormsecurity.com/files/cve/CVE-2013-4211 Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:openx:openx:2.8.10:*:*:*:*:*:*:*

History

21 Nov 2024, 01:55

Type Values Removed Values Added
References () http://www.exploit-db.com/exploits/27529 - Exploit, Third Party Advisory, VDB Entry () http://www.exploit-db.com/exploits/27529 - Exploit, Third Party Advisory, VDB Entry
References () http://www.openwall.com/lists/oss-security/2013/08/07/2 - Mailing List, Third Party Advisory () http://www.openwall.com/lists/oss-security/2013/08/07/2 - Mailing List, Third Party Advisory
References () http://www.securityfocus.com/bid/61650 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/61650 - Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/86259 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/86259 - Third Party Advisory, VDB Entry
References () https://packetstormsecurity.com/files/cve/CVE-2013-4211 - Exploit, Third Party Advisory, VDB Entry () https://packetstormsecurity.com/files/cve/CVE-2013-4211 - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2020-02-14 20:15

Updated : 2024-11-21 01:55


NVD link : CVE-2013-4211

Mitre link : CVE-2013-4211

CVE.ORG link : CVE-2013-4211


JSON object : View

Products Affected

openx

  • openx
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')