CVE-2013-3481

critical
Published 2014-03-27 · Modified 2026-05-06
CVSS v3
CVSS v2
9.3
VIR risk
9.3

Description

Stack-based buffer overflow in Artweaver Plus and Free before 3.1.5 allows remote attackers to execute arbitrary code via a crafted JPG image file.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: PSIRT-CNA@flexerasoftware.com — http://secunia.com/advisories/52652

vendor Authored 2026-05-27

Vendor advisory: PSIRT-CNA@flexerasoftware.com — http://forum.artweaver.de/viewtopic.php?f=5&t=2248

vendor Authored 2026-05-27

Vendor advisory: PSIRT-CNA@flexerasoftware.com — http://forum.artweaver.de/viewtopic.php?f=5&t=2247

Application impact

VendorProductVersionsFixed
b-e-softartweaver_free{"endIncluding":"3.1.4"}
b-e-softartweaver_plus{"endIncluding":"3.1.4"}

References

CWEs

CWE-119

Verify integrity in audit chain (admin only). AS-IS.