CVE-2013-3520

EUVD-2013-3455
VMware vCenter Chargeback Manager (aka CBM) before 2.5.1 does not proper handle uploads, which allows remote attackers to execute arbitrary code via unspecified vectors.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
Affected Products (NVD)
VendorProductVersion
vmwarevcenter_chargeback_manager
𝑥
≤ 2.5.0
vmwarevcenter_chargeback_manager
1.5.0
vmwarevcenter_chargeback_manager
1.6.0
vmwarevcenter_chargeback_manager
1.6.1
vmwarevcenter_chargeback_manager
1.6.2
vmwarevcenter_chargeback_manager
2.0.0
vmwarevcenter_chargeback_manager
2.0.1
𝑥
= Vulnerable software versions