CVE-2013-0706
Summary
| CVE | CVE-2013-0706 |
|---|---|
| State | PUBLISHED |
| Assigner | jpcert |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-02-22 00:55:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | NEC Universal RAID Utility 1.40 Rev 680 and earlier, 2.31 Rev 1492 and earlier, and 2.5 Rev 2244 and earlier does not provide access control, which allows remote attackers to perform arbitrary RAID disk operations via unspecified vectors. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
CompleteAV:N/AC:L/Au:N/C:P/I:P/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nec | Universal Raid Utility | 1.40 | All | All | All |
| Application | Nec | Universal Raid Utility | 2.31 | All | All | All |
| Application | Nec | Universal Raid Utility | 2.5 | All | All | All |
| Application | Nec | Universal Raid Utility | All | rev_680 | All | All |
| Application | Nec | Universal Raid Utility | All | rev_1492 | All | All |
| Application | Nec | Universal Raid Utility | All | rev_2244 | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| jvndb.jvn.jp/jvndb/JVNDB-2013-000012 | af854a3a-2127-422b-91ae-364da2661108 | jvndb.jvn.jp | Vendor Advisory |
| NV13-004: NEC製品セキュリティ情報 | NEC | af854a3a-2127-422b-91ae-364da2661108 | jpn.nec.com | Vendor Advisory |
| JVN#75585394: NEC Universal RAID Utility fails to restrict access permissions | af854a3a-2127-422b-91ae-364da2661108 | jvn.jp | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.