CVE-2013-3520

VMware vCenter Chargeback Manager (aka CBM) before 2.5.1 does not proper handle uploads, which allows remote attackers to execute arbitrary code via unspecified vectors.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
VendorProductVersion
vmwarevcenter_chargeback_manager
𝑥
≤ 2.5.0
vmwarevcenter_chargeback_manager
1.5.0
vmwarevcenter_chargeback_manager
1.6.0
vmwarevcenter_chargeback_manager
1.6.1
vmwarevcenter_chargeback_manager
1.6.2
vmwarevcenter_chargeback_manager
2.0.0
vmwarevcenter_chargeback_manager
2.0.1
𝑥
= Vulnerable software versions