CyberSec.Space Logo
Back to CVE Browser

CVE-2013-7331

Known Exploited (CISA KEV)MEDIUM
6.5
CVSS Severity Score
EPSS Score77.4370%
EPSS Percentile89.69th
PublishedFeb 26, 2014
Last ModifiedApr 22, 2026

Vulnerability Description

The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC share pathnames, intranet hostnames, and intranet IP addresses by examining error codes, as demonstrated by a res:// URL, and exploited in the wild in February 2014.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Internet Explorer

= 6
πŸ“¦
Microsoft

Internet Explorer

= 7
πŸ“¦
Microsoft

Internet Explorer

= 8
πŸ“¦
Microsoft

Internet Explorer

= 9
πŸ“¦
Microsoft

Internet Explorer

= 10
πŸ“¦
Microsoft

Internet Explorer

= 11

References & Advisories

Related Vulnerabilities