{"api_version":"1","generated_at":"2026-07-23T13:38:46+00:00","cve":"CVE-2013-3782","urls":{"html":"https://cve.report/CVE-2013-3782","api":"https://cve.report/api/cve/CVE-2013-3782.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2013-3782","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2013-3782"},"summary":{"title":"CVE-2013-3782","description":"Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 prior to 4.63 and 4.7 prior to 4.71 allows remote attackers to affect integrity via unknown vectors related to Web UI.","state":"PUBLISHED","assigner":"oracle","published_at":"2013-07-17 13:41:16","updated_at":"2026-04-29 01:13:23"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"4.3","severity":"","vector":"AV:N/AC:M/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/85707","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/85707","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/61231","name":"http://www.securityfocus.com/bid/61231","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle Secure Global Desktop CVE-2013-3782 Remote Security Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html","name":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Oracle Critical Patch Update - July 2013","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/54238","name":"http://secunia.com/advisories/54238","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Security Advisory SA54238 - Oracle Secure Global Desktop Web UI Two Vulnerabilities - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id/1028793","name":"http://www.securitytracker.com/id/1028793","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Oracle Virtualization Flaws Let Remote Users Partially Access and Modify Data and Partially Deny Service - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/95320","name":"http://osvdb.org/95320","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2013-3782","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2013-3782","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2013","cve_id":"3782","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"virtualization","cpe6":"4.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2013","cve_id":"3782","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"oracle","cpe5":"virtualization","cpe6":"4.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T16:22:01.115Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"95320","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/95320"},{"name":"oracle-cpujuly2013-cve20133782(85707)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/85707"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html"},{"name":"61231","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/61231"},{"name":"54238","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/54238"},{"name":"1028793","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id/1028793"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2013-07-16T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 prior to 4.63 and 4.7 prior to 4.71 allows remote attackers to affect integrity via unknown vectors related to Web UI."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-28T12:57:01.000Z","orgId":"43595867-4340-4103-b7a2-9a5208d29a85","shortName":"oracle"},"references":[{"name":"95320","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/95320"},{"name":"oracle-cpujuly2013-cve20133782(85707)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/85707"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html"},{"name":"61231","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/61231"},{"name":"54238","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/54238"},{"name":"1028793","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id/1028793"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"secalert_us@oracle.com","ID":"CVE-2013-3782","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 prior to 4.63 and 4.7 prior to 4.71 allows remote attackers to affect integrity via unknown vectors related to Web UI."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"95320","refsource":"OSVDB","url":"http://osvdb.org/95320"},{"name":"oracle-cpujuly2013-cve20133782(85707)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/85707"},{"name":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html","refsource":"CONFIRM","url":"http://www.oracle.com/technetwork/topics/security/cpujuly2013-1899826.html"},{"name":"61231","refsource":"BID","url":"http://www.securityfocus.com/bid/61231"},{"name":"54238","refsource":"SECUNIA","url":"http://secunia.com/advisories/54238"},{"name":"1028793","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1028793"}]}}}},"cveMetadata":{"assignerOrgId":"43595867-4340-4103-b7a2-9a5208d29a85","assignerShortName":"oracle","cveId":"CVE-2013-3782","datePublished":"2013-07-17T10:00:00.000Z","dateReserved":"2013-06-03T00:00:00.000Z","dateUpdated":"2024-08-06T16:22:01.115Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2013-07-17 13:41:16","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:N/I:P/A:N","baseScore":4.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":8.6,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:virtualization:4.6:*:*:*:*:*:*:*","matchCriteriaId":"3F4EB8B7-9984-42D3-847C-91FF753D159A"},{"vulnerable":true,"criteria":"cpe:2.3:a:oracle:virtualization:4.7:*:*:*:*:*:*:*","matchCriteriaId":"4946E73A-27B2-4BF2-8372-65D81D42272E"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2013","CveId":"3782","Ordinal":"1","Title":"CVE-2013-3782","CVE":"CVE-2013-3782","Year":"2013"},"notes":[{"CveYear":"2013","CveId":"3782","Ordinal":"1","NoteData":"Unspecified vulnerability in the Secure Global Desktop component in Oracle Virtualization 4.6 prior to 4.63 and 4.7 prior to 4.71 allows remote attackers to affect integrity via unknown vectors related to Web UI.","Type":"Description","Title":"CVE-2013-3782"},{"CveYear":"2013","CveId":"3782","Ordinal":"2","NoteData":"2013-07-17","Type":"Other","Title":"Published"},{"CveYear":"2013","CveId":"3782","Ordinal":"3","NoteData":"2017-08-28","Type":"Other","Title":"Modified"}]}}}