Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE-2013-2144

EPSS 0.38% · P60
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2013-2144

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Red Hat Enterprise Virtualization Manager (RHEVM) before 3.2 does not properly check permissions for the target storage domain, which allows attackers to cause a denial of service (disk space consumption) by cloning a VM from a snapshot.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Red Hat Enterprise Virtualization Manager 拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Red Hat Enterprise Virtualization Manager(RHEV-M)是美国红帽(Red Hat)公司的RHEV(企业虚拟化平台)的核心组件。该组件包含KVM工具,提供虚拟化管理功能。 Red Hat Enterprise Virtualization Manager (RHEVM)3.2及之前的版本中存在漏洞,该漏洞源于程序没有正确检查目标存储域的权限。攻击者可利用该漏洞造成拒绝服务(磁盘空间耗尽)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2013-2144

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-2144

登录查看更多情报信息。

Vendor Advisories for CVE-2013-2144 (1)

Same Patch Batch · n/a · 2013-07-03 · 24 CVEs total

CVE-2013-0479IBM Sterling B2B Integrator和Sterling File Gateway 权限许可和访问控制漏洞
CVE-2013-3020IBM Sterling B2B Integrato和Sterling File Gateway 信息泄露漏洞
CVE-2013-2987IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-2985IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-2984IBM Sterling B2B Integrator和Sterling File Gateway 路径遍历漏洞
CVE-2013-2982IBM Sterling B2B Integrator和Sterling File Gateway 任意文件上传漏洞
CVE-2013-0568IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-0567IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-0560IBM Sterling B2B Integrator和Sterling File Gateway 多个SQL注入漏洞
CVE-2013-0558IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-0539IBM Sterling B2B Integrator和Sterling File Gateway 信任管理漏洞
CVE-2013-0481IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-1960LibTIFF 缓冲区错误漏洞
CVE-2013-0476IBM Sterling B2B Integrator和Sterling File Gateway FTP命令注入漏洞
CVE-2013-0475IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-0468IBM Sterling B2B Integrator和Sterling File Gateway 跨站脚本漏洞
CVE-2013-0463IBM Sterling B2B Integrator和Sterling File Gateway 信息泄露漏洞
CVE-2013-0456IBM Sterling B2B Integrator和Sterling File Gateway 会话劫持漏洞
CVE-2012-5936IBM Sterling B2B Integrator和Sterling File Gateway 远程信息泄露漏洞
CVE-2012-5766IBM Sterling B2B Integrator和Sterling File Gateway 输入验证漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-2144

No comments yet


Leave a comment