CVE-2013-2057: Malicious File Upload
Published Feb 11, 2020
·Updated
YaBB through 2.5.2: 'guestlanguage' Cookie Parameter Local File Include Vulnerability
Affected Software
1 affected component
Yabb Yabb<=2.5.2
Event History
Feb 11, 2020
CVE Published
via MITRE·05:41 PM
Data Sourced
via MITRE·05:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2013-2057?
CVE-2013-2057 is classified as a medium severity local file inclusion vulnerability.
2
How do I fix CVE-2013-2057?
To fix CVE-2013-2057, upgrade YaBB to version 2.5.3 or later where the vulnerability is addressed.
3
What type of vulnerability is CVE-2013-2057?
CVE-2013-2057 is a local file include vulnerability affecting the 'guestlanguage' cookie parameter.
4
Which versions of YaBB are affected by CVE-2013-2057?
YaBB versions up to and including 2.5.2 are affected by CVE-2013-2057.
5
Can CVE-2013-2057 lead to remote code execution?
While CVE-2013-2057 allows local file inclusion, it does not directly lead to remote code execution but may enable further attacks.