CVE-2013-1841
UnknownEPSS 1.94%
Last modified
CVE-2013-1841 is a vulnerability of currently unknown severity. Net-Server, when the reverse-lookups option is enabled, does not check if the hostname resolves to the source IP address, which might allow remote attackers to bypass ACL restrictions via the hostname parameter.. EPSS estimates a 1.94% chance of exploitation in the next 30 days.
Description
Net-Server, when the reverse-lookups option is enabled, does not check if the hostname resolves to the source IP address, which might allow remote attackers to bypass ACL restrictions via the hostname parameter.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Seamons | Net-Server | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-1841?
Net-Server, when the reverse-lookups option is enabled, does not check if the hostname resolves to the source IP address, which might allow remote attackers to bypass ACL restrictions via the hostname parameter.
How severe is CVE-2013-1841?
Severity scoring for CVE-2013-1841 is pending analysis. The EPSS model estimates a 1.94% probability of exploitation in the next 30 days.
How do I fix CVE-2013-1841?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-1835Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before …
- CVE-2013-1836Moodle 2.x through 2.1.10, 2.2.x before 2.2.8, 2.3.x before …
- CVE-2013-1837Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2013-1838OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex…
- CVE-2013-1839The strHdrAcptLangGetItem function in errorpage.cc in Squid …
- CVE-2013-1840The v1 API in OpenStack Glance Essex (2012.1), Folsom (2012.…
- CVE-2013-1842SQL injection vulnerability in the Extbase Framework in TYPO…
- CVE-2013-1843Open redirect vulnerability in the Access tracking mechanism…
- CVE-2013-1844Cross-site scripting (XSS) vulnerability in Piwik before 1.1…
- CVE-2013-1845The mod_dav_svn Apache HTTPD server module in Subversion 1.6…
- CVE-2013-1846The mod_dav_svn Apache HTTPD server module in Subversion 1.6…
- CVE-2013-1847The mod_dav_svn Apache HTTPD server module in Subversion 1.6…
Are you affected by CVE-2013-1841?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
