Language:
https://www.zerodayinitiative.com/advisories/ZDI-13-271/
https://www.zerodayinitiative.com/advisories/ZDI-13-272/
https://www.zerodayinitiative.com/advisories/ZDI-13-273/
https://docs.microsoft.com/en-us/security-updates/SecurityBulletins/2013/ms13-097
Severity: High
ID: 71312
File Name: smb_nt_ms13-097.nasl
Version: 1.15
Type: local
Agent: windows
Family: Windows : Microsoft Bulletins
Published: 12/11/2013
Updated: 11/15/2018
Supported Sensors: Nessus
Risk Factor: Critical
Score: 9.4
Risk Factor: High
Base Score: 9.3
Temporal Score: 8.1
Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
CPE: cpe:/o:microsoft:windows, cpe:/a:microsoft:ie
Required KB Items: SMB/MS_Bulletin_Checks/Possible
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 12/10/2013
Vulnerability Publication Date: 12/10/2013
Core Impact
Metasploit (MS13-097 Registry Symlink IE Sandbox Escape)
CVE: CVE-2013-5045, CVE-2013-5046, CVE-2013-5047, CVE-2013-5048, CVE-2013-5049, CVE-2013-5051, CVE-2013-5052
BID: 64115, 64117, 64119, 64120, 64123, 64124, 64126
MSFT: MS13-097
MSKB: 2898785