CVE detail
CVE-2013-7331
The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC share pathnames, intranet hostnames, and intranet IP addresses by examining error codes, as demonstrated by a res:// URL, and exploited in the wild in February 2014.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 8.0 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
It’s a new year and while some things change, some things stay the same (or similar). There’s lots of FUD about the sophisticated cyber attacks that are multi-threaded and obfuscated. Certainly there are attacks that fall into this category, but if you look at all of the cybercrime activity from the past year, it’s clear that the majority of threats do not have the level of sophistication that is often talked about.
newswww.securityweek.comJan 20, 2017, 4:16 PM- Exploit kits: Fall 2016 reviewMalwarebytes Labs
There have been interesting developments with exploit kits in the past few months to say the least, with the disappearance of…
newswww.malwarebytes.comNov 8, 2016, 5:00 PM - Browser-based fingerprinting: implications and mitigationsMalwarebytes Labs
Update (04/12/2017): The INRIA has a tool to fingerprint browser extensions and detect other other browser leaks.Update (03/17/2017): Microsoft patched CVE-2017-0022, reported by…
newswww.malwarebytes.comAug 28, 2016, 5:00 PM - Neutrino EK: fingerprinting in a FlashMalwarebytes Labs
Since the disappearance of Angler EK, exploit kit activity is at one of its lowest it has been in a long…
newswww.malwarebytes.comJun 27, 2016, 5:00 PM - SSL Malvertising Campaign Targets Top Adult SitesMalwarebytes Labs
The SSL malvertising campaign we documented in August that affected Yahoo.com, MSN.com and several other top sites is still ongoing. This…
newswww.malwarebytes.comSep 24, 2015, 5:00 PM - Angler Exploit Kit Gives Up on Malwarebytes UsersMalwarebytes Labs
It is a well-known fact that malware authors try really hard to avoid security researchers and their analysis tools. For instance,…
newswww.malwarebytes.comMay 18, 2015, 5:00 PM Researchers from threat protection firm Bromium were alerted last week by a customer to an attack originating from the website of a high-profile technology startup in the oil and gas sector.
newswww.securityweek.comSep 17, 2014, 10:02 PMTucked within Microsoft’s September patch release was a fix for a vulnerability that had been used this year in a sophisticated attack aimed at stealing U.S. military secrets. A proof-of-concept (PoC) exploit for the XMLDOM vulnerability, which Microsoft labeled cve-2013-7331, was first released in April 2013. The PoC was then “re-repurposed and abused” in the […]
newswww.csoonline.comSep 12, 2014, 12:01 AMMicrosoft issued a patch today for a vulnerability in Internet Explorer (IE) that has been targeted in attacks as part of its monthly Patch Tuesday update.
newswww.securityweek.comSep 9, 2014, 7:33 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2014-4123CVSS 8.8 · High
Microsoft Internet Explorer 7 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability," as exploi…
KEV listed - CVE-2014-2817CVSS 8.8 · High
Microsoft Internet Explorer 6 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."
KEV listed1 mention - CVE-2014-1776CVSS 9.8 · Critical
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vec…
- CVE-2015-2423CVSS 4.3 · Medium
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Excel…
- CVE-2015-2387CVSS 7.8 · High
ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1,…
- CVE-2015-2360CVSS 8.8 · High
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1…