CVE-2013-3658
UnknownEPSS 3.69%
Last modified
CVE-2013-3658 is a vulnerability of currently unknown severity. Directory traversal vulnerability in VMware ESXi 4.0 through 5.0, and ESX 4.0 and 4.1, allows remote attackers to delete arbitrary host OS files via unspecified vectors.. EPSS estimates a 3.69% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in VMware ESXi 4.0 through 5.0, and ESX 4.0 and 4.1, allows remote attackers to delete arbitrary host OS files via unspecified vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Esx | 4.0 |
| Vmware | Esx | 4.1 |
| Vmware | Esxi | 4.0 |
| Vmware | Esxi | 4.1 |
| Vmware | Esxi | 5.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-3658?
Directory traversal vulnerability in VMware ESXi 4.0 through 5.0, and ESX 4.0 and 4.1, allows remote attackers to delete arbitrary host OS files via unspecified vectors.
How severe is CVE-2013-3658?
Severity scoring for CVE-2013-3658 is pending analysis. The EPSS model estimates a 3.69% probability of exploitation in the next 30 days.
How do I fix CVE-2013-3658?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-3652Cross-site scripting (XSS) vulnerability in data/class/pages…
- CVE-2013-3653Multiple cross-site scripting (XSS) vulnerabilities in the R…
- CVE-2013-3654Directory traversal vulnerability in LOCKON EC-CUBE 2.12.0 t…
- CVE-2013-3655The Sharp AQUOS PhotoPlayer HN-PP150 with firmware before 1.…
- CVE-2013-3656Cybozu Office 9.1.0 and earlier does not properly manage ses…
- CVE-2013-3657Buffer overflow in VMware ESXi 4.0 through 5.0, and ESX 4.0 …
- CVE-2013-3659The NTT DOCOMO overseas usage application 2.0.0 through 2.0.…
- CVE-2013-3660The EPATHOBJ::pprFlattenRec function in win32k.sys in the ke…7.8
- CVE-2013-3661The EPATHOBJ::bFlatten function in win32k.sys in Microsoft W…
- CVE-2013-3662Timbre SketchUp (formerly Google SketchUp) before 8 Maintena…
- CVE-2013-3663Heap-based buffer overflow in paintlib, as used in Trimble S…
- CVE-2013-3664Trimble SketchUp (formerly Google SketchUp) before 2013 (13.…
Are you affected by CVE-2013-3658?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
