CVE-2013-4211: Code Injection
Published Feb 14, 2020
·Updated
A Code Execution Vulnerability exists in OpenX Ad Server 2.8.10 due to a backdoor in flowplayer-3.1.1.min.js library, which could let a remote malicious user execute arbitrary PHP code
Affected Software
1 affected component
OpenX OpenX=2.8.10
Event History
Feb 14, 2020
CVE Published
via MITRE·07:59 PM
Data Sourced
via MITRE·07:59 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2013-4211?
CVE-2013-4211 is rated as a critical vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2013-4211?
To fix CVE-2013-4211, upgrade OpenX Ad Server to a version that does not include the vulnerable flowplayer-3.1.1.min.js library.
3
What systems are affected by CVE-2013-4211?
CVE-2013-4211 specifically affects OpenX Ad Server version 2.8.10.
4
What impact does CVE-2013-4211 have on my system?
Exploitation of CVE-2013-4211 allows attackers to execute arbitrary PHP code on the affected system, potentially leading to full system compromise.
5
Is CVE-2013-4211 easy to exploit?
Yes, CVE-2013-4211 is considered relatively easy to exploit, making it crucial to address promptly.