Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2013-7331
Description:The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC share pathnames, intranet hostnames, and intranet IP addresses by examining error codes, as demonstrated by a res:// URL, and exploited in the wild in February 2014.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2013-7331
CERT/CC vulnerability note: VU#539289
http://www.kb.cert.org/vuls/id/539289
http://www.fireeye.com/blog/uncategorized/2014/02/operation-snowman-deputydog-actor-compromises-us-veterans-of-foreign-wars-website.html
https://soroush.secproject.com/blog/2013/04/microsoft-xmldom-in-ie-can-divulge-information-of-local-drivenetwork-in-error-messages/
Microsoft Security Bulletin: MS14-052
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-052
http://www.securitytracker.com/id/1030818




© 1998-2025 E-Soft Inc. All rights reserved.