CVE-2013-4610: Critical severity redcap (research electronic data capture) by vanderbilt university vulnerability
Published Jun 17, 2013
·Updated
Unspecified vulnerability in the Data Search utility in data-entry forms in REDCap before 5.0.3 and 5.1.x before 5.1.2 has unknown impact and remote attack vectors.
Affected Software
19 affected components
Project-redcap Redcap=4.13.18
Project-redcap Redcap=4.14.5
Project-redcap Redcap=4.14.6
Project-redcap Redcap=4.15.0
Project-redcap Redcap=4.15.1
Project-redcap Redcap=4.15.2
Project-redcap Redcap=4.15.3
Project-redcap Redcap=4.15.4
Project-redcap Redcap=5.0.0
Project-redcap Redcap=5.0.1
Project-redcap Redcap=5.0.6
Project-redcap Redcap=5.1.0
Project-redcap Redcap=5.1.1
Vanderbilt REDCap<=5.0.2
Vanderbilt REDCap=4.14.0
Vanderbilt REDCap=4.14.1
Vanderbilt REDCap=4.14.2
Vanderbilt REDCap=4.14.3
Vanderbilt REDCap=4.14.4
Event History
Jun 17, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What versions are affected by CVE-2013-4610?
CVE-2013-4610 affects REDCap versions before 5.0.3 and 5.1.x versions before 5.1.2.
2
What is the impact of CVE-2013-4610?
The impact of CVE-2013-4610 is unspecified but may allow for remote attacks.
3
How can I mitigate CVE-2013-4610?
To mitigate CVE-2013-4610, upgrade to REDCap version 5.0.3 or 5.1.2 and later.
4
Does CVE-2013-4610 require authentication to exploit?
The specifics regarding authentication for exploiting CVE-2013-4610 are not disclosed.
5
Is there a patch available for CVE-2013-4610?
Yes, patches are available in the newer versions of REDCap beyond 5.0.3 and 5.1.2.