CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2013-7331

Known Exploited (CISA KEV)MEDIUM
6.5
CVSS Severity Score
EPSS Score77.4370%
EPSS Percentile89.69th
Published2014年2月26日
Last Modified2026年4月22日

Vulnerability Description

The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC share pathnames, intranet hostnames, and intranet IP addresses by examining error codes, as demonstrated by a res:// URL, and exploited in the wild in February 2014.

Affected Platforms (CPE)

📦
Microsoft

Internet Explorer

= 6
📦
Microsoft

Internet Explorer

= 7
📦
Microsoft

Internet Explorer

= 8
📦
Microsoft

Internet Explorer

= 9
📦
Microsoft

Internet Explorer

= 10
📦
Microsoft

Internet Explorer

= 11

References & Advisories

相關漏洞威脅