← Back

CVE-2013-1286

nvd nist
Published: Mar 13, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The USB kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, and Windows Server 2012 do not properly handle objects in memory, which allows physically proximate attackers to execute arbitrary code by connecting a crafted USB device, aka "Windows USB Descriptor Vulnerability," a different vulnerability than CVE-2013-1285 and CVE-2013-1287.

Affected (16)

7 products
Windows Xp
Windows Server 2003
Windows Vista
Windows Server 2008
Windows 7
Windows 8
Windows Server 2012
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Configuration D
3 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
Configuration E
3 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
Configuration F
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Configuration G
2 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Configuration H
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Related CWEs

Timeline

No history available yet.