UBUNTU-CVE-2013-5321

Source
https://ubuntu.com/security/CVE-2013-5321
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-5321.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2013-5321
Upstream
  • CVE-2013-5321
Published
2013-08-20T14:56:00Z
Modified
2026-04-22T09:25:01.756910Z
Severity
  • Ubuntu - medium
Summary
[none]
Details

Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.1 allow remote attackers to execute arbitrary SQL commands via the (1) sensor parameter in a Query action to forensics/baseqrymain.php; the (2) tcpflags[] or (3) tcpport[0][4] parameter to forensics/basestatalerts.php; the (4) ipaddr[1][8] or (5) porttype parameter to forensics/basestatports.php; or the (6) sortby or (7) rvalue parameter in a search action to vulnmeter/index.php.

References

Affected packages

Ubuntu:16.04:LTS / ossim

Package

Name
ossim
Purl
pkg:deb/ubuntu/ossim@1.8.16-4ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.8.16-4ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.8.16-4ubuntu1",
            "binary_name": "libossim1v5"
        },
        {
            "binary_version": "1.8.16-4ubuntu1",
            "binary_name": "ossim-core"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-5321.json"

Ubuntu:18.04:LTS / ossim

Package

Name
ossim
Purl
pkg:deb/ubuntu/ossim@2.2.2-1?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*
1.8.20.3+ds-5build1
2.*
2.2.0-1
2.2.1-1
2.2.2-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.2.2-1",
            "binary_name": "libossim1"
        },
        {
            "binary_version": "2.2.2-1",
            "binary_name": "ossim-core"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-5321.json"

Ubuntu:20.04:LTS / ossim

Package

Name
ossim
Purl
pkg:deb/ubuntu/ossim@2.9.1-2build1?arch=source&distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.9.0-1
2.9.1-2
2.9.1-2build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.9.1-2build1",
            "binary_name": "libossim1"
        },
        {
            "binary_version": "2.9.1-2build1",
            "binary_name": "ossim-core"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2013/UBUNTU-CVE-2013-5321.json"