Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.902949
Category:Windows : Microsoft Bulletins
Title:Microsoft FAST Search Server 2010 SharePoint RCE Vulnerabilities (2784242)
Summary:This host is missing an important security update according to; Microsoft Bulletin MS13-013.
Description:Summary:
This host is missing an important security update according to
Microsoft Bulletin MS13-013.

Vulnerability Insight:
The flaws are due to the error in Oracle Outside In libraries, when
used by the Advanced Filter Pack while parsing specially crafted files.

Vulnerability Impact:
Successful exploitation could run arbitrary code in the context of a user
account with a restricted token.

Affected Software/OS:
Microsoft FAST Search Server 2010 for SharePoint Service Pack 1.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
2.1

CVSS Vector:
AV:L/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-3214
Cert/CC Advisory: TA12-346A
http://www.us-cert.gov/cas/techalerts/TA12-346A.html
Cert/CC Advisory: TA13-043B
http://www.us-cert.gov/cas/techalerts/TA13-043B.html
http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
Microsoft Security Bulletin: MS12-080
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-080
Microsoft Security Bulletin: MS13-013
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-013
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16178
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16500
Common Vulnerability Exposure (CVE) ID: CVE-2012-3217
http://osvdb.org/86392
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15911
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16080
CopyrightCopyright (C) 2013 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.