Medium severity5.3NVD Advisory· Published Feb 6, 2020· Updated Jun 16, 2026
CVE-2013-3564
CVE-2013-3564
Description
The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authenticating.
Affected products
3cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:videolan:vlc_media_player:*:*:*:*:*:*:*:*range: <2.0.7
- (no CPE)range: <2.0.7
- VideoLAN/VLC media playerdescription
Patches
Vulnerability mechanics
References
1- www3.trustwave.com/spiderlabs/advisories/TWSL2013-007.txtnvdThird Party Advisory
News mentions
0No linked articles in our index yet.