CVE-2013-5321: SQL Injection
Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.1 allow remote attackers to execute arbitrary SQL commands via the (1) sensor parameter in a Query action to forensics/baseqrymain.php; the (2) tcpflags[] or (3) tcpport[0][4] parameter to forensics/basestatalerts.php; the (4) ipaddr[1][8] or (5) porttype parameter to forensics/basestatports.php; or the (6) sortby or (7) rvalue parameter in a search action to vulnmeter/index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5321?
CVE-2013-5321 is classified as a medium severity vulnerability due to the potential for remote SQL injection.
How do I fix CVE-2013-5321?
To fix CVE-2013-5321, it is recommended to update AlienVault Open Source Security Information Management to version 4.2 or later.
What impact does CVE-2013-5321 have on systems?
CVE-2013-5321 allows remote attackers to execute arbitrary SQL commands, potentially leading to data exposure or manipulation.
Which versions of AlienVault are affected by CVE-2013-5321?
CVE-2013-5321 affects AlienVault Open Source Security Information Management version 4.1.
Can CVE-2013-5321 be exploited remotely?
Yes, CVE-2013-5321 can be exploited remotely by attackers targeting specific parameters in the application.