CVE-2014-1331
published 2014-05-22CVE-2014-1331: WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory…
PriorityP429medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
2.33%
81.8th percentile
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | safari | <= 6.1.3 | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
| apple | safari | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-fjcm-m87j-p948: WebKit, as used in Apple Safari before 6
ghsa_unreviewed·2022-05-17
CVE-2014-1331 [MEDIUM] CWE-119 GHSA-fjcm-m87j-p948: WebKit, as used in Apple Safari before 6
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
OSV
CVE-2014-1331: WebKit, as used in Apple Safari before 6
osv·2014-05-22·CVSS 6.8
CVE-2014-1331 [MEDIUM] CVE-2014-1331: WebKit, as used in Apple Safari before 6
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
Red Hat
webkitgtk: arbitrary code execution and denial of service via a crafted web site (WSA-2015-0001)
vendor_redhat·2015-01-26·CVSS 6.8
CVE-2014-1331 [MEDIUM] webkitgtk: arbitrary code execution and denial of service via a crafted web site (WSA-2015-0001)
webkitgtk: arbitrary code execution and denial of service via a crafted web site (WSA-2015-0001)
WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.
Statement: Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: webkitgtk (Red Hat Enterprise Linux 6) - Will not fix
Package: webkitgtk3 (Red Hat Enterprise Linux
No detection rules found.
Exploit-DB
Seagate BlackArmor NAS sg2000-2000.1331 - Cross-Site Request Forgery
exploitdb·2014-01-06·CVSS 6.8
CVE-2013-6922 [MEDIUM] Seagate BlackArmor NAS sg2000-2000.1331 - Cross-Site Request Forgery
Seagate BlackArmor NAS sg2000-2000.1331 - Cross-Site Request Forgery
---
# Exploit Title: Seagate BlackArmor NAS - Cross Site Request Forgery
# Google Dork: N/A
# Date: 04-01-2014
# Exploit Author: Jeroen - IT Nerdbox
# Vendor Homepage: http://www.seagate.com/
# Software Link:
http://www.seagate.com/support/downloads/item/banas-220-firmware-master-dl/
# Version: sg2000-2000.1331
# Tested on: N/A
# CVE : CVE-2013-6922
#
## Description:
#
# There are multiple CSRF attacks possible, the proof of concept shows how
it is possible to add
# a user with administrative privileges to the system.
#
# It is also possible to:
#
# 1. Factory reset the device
# 2. Reboot the device
# 3. Add/Edit/Remove users
# 4. Add/Edit/Remove shares and volumes
#
# This vulnerability was reported t
Exploit-DB
Seagate BlackArmor NAS sg2000-2000.1331 - Multiple Persistent Cross-Site Scripting Vulnerabilities
exploitdb·2014-01-06·CVSS 4.3
CVE-2013-6923 [MEDIUM] Seagate BlackArmor NAS sg2000-2000.1331 - Multiple Persistent Cross-Site Scripting Vulnerabilities
Seagate BlackArmor NAS sg2000-2000.1331 - Multiple Persistent Cross-Site Scripting Vulnerabilities
---
# Exploit Title: Seagate BlackArmor NAS - Multiple Persistent Cross Site
Scripting Vulnerabilities
# Google Dork: N/A
# Date: 04-01-2014
# Exploit Author: Jeroen - IT Nerdbox
# Vendor Homepage: http://www.seagate.com/
# Software Link:
http://www.seagate.com/support/downloads/item/banas-220-firmware-master-dl/
# Version: sg2000-2000.1331
# Tested on: N/A
# CVE : CVE-2013-6923
#
## Description:
#
# When adding a user to the device, it is possible to enter a full name.
This input field does not
# sanitize its input and it is possible to enter any payload which will get
executed upon reload.
#
# The workgroup configuration is also vulnerable to persistent XSS. The Work
Group
Exploit-DB
Seagate BlackArmor NAS sg2000-2000.1331 - Remote Command Execution
exploitdb·2014-01-06·CVSS 9.8
CVE-2013-6924 [CRITICAL] Seagate BlackArmor NAS sg2000-2000.1331 - Remote Command Execution
Seagate BlackArmor NAS sg2000-2000.1331 - Remote Command Execution
---
# Exploit Title: Seagate BlackArmor NAS - Remote Command Execution
# Google Dork: N/A
# Date: 04-01-2014
# Exploit Author: Jeroen - IT Nerdbox
# Vendor Homepage: http://www.seagate.com/
# Software Link:
http://www.seagate.com/support/downloads/item/banas-220-firmware-master-dl/
# Version: sg2000-2000.1331
# Tested on: N/A
# CVE : CVE-2013-6924
#
## Description:
#
# The file getAlias.php located in /backupmgt has the following lines:
#
# $ipAddress = $_GET["ip";
# if ($ipAddress != "") {
# exec("grep -I $ipAddress $immedLogFile > aliasHistory.txt");
# ..
# ..
# }
#
# The GET parameter can easily be manipulated to execute commands on the
BlackArmor system.
#
## Proof of Concept:
#
# http(s):///
http://archives.neohapsis.com/archives/bugtraq/2014-05/0128.htmlhttp://archives.neohapsis.com/archives/bugtraq/2014-06/0174.htmlhttp://archives.neohapsis.com/archives/bugtraq/2014-06/0175.htmlhttp://support.apple.com/kb/HT6254http://www.securityfocus.com/bid/67553https://support.apple.com/kb/HT6537http://archives.neohapsis.com/archives/bugtraq/2014-05/0128.htmlhttp://archives.neohapsis.com/archives/bugtraq/2014-06/0174.htmlhttp://archives.neohapsis.com/archives/bugtraq/2014-06/0175.htmlhttp://support.apple.com/kb/HT6254http://www.securityfocus.com/bid/67553https://support.apple.com/kb/HT6537
2014-05-22
Published