CVE-2013-3632: Critical severity openmediavault vulnerability
Published Sep 29, 2014
·Updated
The Cron service in rpc.php in OpenMediaVault allows remote authenticated users to execute cron jobs as arbitrary users and execute arbitrary commands via the username parameter.
Affected Software
1 affected component
OpenMediaVault OpenMediaVault
Event History
Sep 29, 2014
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-3632?
CVE-2013-3632 has a high severity rating due to allowing remote authenticated users to execute arbitrary commands.
2
How do I fix CVE-2013-3632?
To fix CVE-2013-3632, update OpenMediaVault to the latest version that contains the necessary security patches.
3
Who is affected by CVE-2013-3632?
Remote authenticated users of the OpenMediaVault system are affected by CVE-2013-3632.
4
What types of vulnerabilities are present in CVE-2013-3632?
CVE-2013-3632 presents a privilege escalation vulnerability that allows unauthorized command execution.
5
Can CVE-2013-3632 lead to data breaches?
Yes, CVE-2013-3632 can lead to data breaches as attackers can execute arbitrary commands on the system.