AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-0209

HIGH · CVSS 7.5 EPSS 45.20%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-01-23 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. Its EPSS score suggests a 45.2% probability of exploitation in the next 30 days. It may be remotely exploitable. It involves a SQL injection risk.

CVE
CVE-2013-0209
Severity
HIGH
CVSS
7.5
EPSS
45.20%

Original NVD Description

lib/MT/Upgrade.pm in mt-upgrade.cgi in Movable Type 4.2x and 4.3x through 4.38 does not require authentication for requests to database-migration functions, which allows remote attackers to conduct eval injection and SQL injection attacks via crafted parameters, as demonstrated by an eval injection attack against the core_drop_meta_for_table function, leading to execution of arbitrary Perl code.