CVE-2013-7369 - CVE House
Back to Database
Status published High CVE-2013-7369

SQL injection vulnerability in an unspecified DLL in the FSDBCom...

Vulnerability Description

SQL injection vulnerability in an unspecified DLL in the FSDBCom ActiveX control in F-Secure Anti-Virus for Microsoft Exchange Server before HF02, Anti-Virus for Windows Servers 9.00 before HF09, Anti-Virus for Citrix Servers 9.00 before HF09, and F-Secure Email and Server Security and F-Secure Server Security 9.20 before HF01 allows remote attackers to execute arbitrary SQL commands via unknown vectors, related to GetCommand.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-7369

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

anti-virus, email and server security, server security
Vulnerable Versions:
9.00, 9.10, 9.20

Timeline

Official Publish: April 18th, 2014
Last Modified: September 17th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.