VYPR
Medium severity5.3NVD Advisory· Published Feb 6, 2020· Updated Jun 16, 2026

CVE-2013-3564

CVE-2013-3564

Description

The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authenticating.

Affected products

3
  • cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:*range: <2.0.7
    • (no CPE)range: <2.0.7
  • VideoLAN/VLC media playerdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.