CVE-2013-3137: Infoleak
Published Sep 11, 2013
·Updated
Microsoft FrontPage 2003 SP3 does not properly parse DTDs, which allows remote attackers to obtain sensitive information via crafted XML data in a FrontPage document, aka "XML Disclosure Vulnerability."
Affected Software
1 affected component
Microsoft FrontPage=2003-sp3
Event History
Sep 11, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3137?
CVE-2013-3137 has a medium severity rating, indicating potential sensitive information disclosure risks.
2
How do I fix CVE-2013-3137?
To fix CVE-2013-3137, users should update Microsoft FrontPage to the latest available security patch.
3
What type of attack is associated with CVE-2013-3137?
CVE-2013-3137 is associated with remote attacks that exploit crafted XML data to disclose sensitive information.
4
Which software is affected by CVE-2013-3137?
CVE-2013-3137 affects Microsoft FrontPage 2003 SP3.
5
Can CVE-2013-3137 lead to sensitive data exposure?
Yes, CVE-2013-3137 can lead to the exposure of sensitive information due to improper parsing of DTDs.