CVE-2010-0013 is a directory traversal vulnerability in the MSN protocol plugin of Pidgin 2.6.4 and Adium 1.3.8, allowing remote attackers to read arbitrary files. This high-severity vulnerability (CVSS 7.5) can be exploited with low complexity over the network, potentially leading to unauthorized information disclosure. While there is no evidence of active exploitation or Metasploit/Nuclei modules, an ExploitDB entry (EDB-11203) exists, and the CVE has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.3.8CPE matchmatch criteria | cpe:2.3:a:adium:adium:1.3.8:*:*:*:*:*:*:* | ||
2.6.4CPE matchmatch criteria | cpe:2.3:a:pidgin:pidgin:2.6.4:*:*:*:*:*:*:* | ||
11CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:11:*:*:*:*:*:*:* | ||
12CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:12:*:*:*:*:*:*:* | ||
>= 11.0, <= 11.2CPE matchmatch criteria | cpe:2.3:o:opensuse:opensuse:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.