CVE-2013-7331
CVSS 2.0 Score 4.3 of 10 (medium)
Details
Summary
CVE-2013-7331 is a vulnerability affecting the Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and older versions. attackers can exploit this issue to determine the existence of local paths, UNC share paths, intranet hostnames, and intranet IP addresses by examining error codes. This vulnerability was demonstrated in the wild in February 2014, making it a significant security concern for affected systems. By leveraging a res:// URL, attackers can gain valuable information about a target network, increasing the risk of further exploitation. It is essential that users apply the available patches to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Internet Explorer
Affected Vendors
- Microsoft