ID

VAR-201307-0393


CVE

CVE-2013-4890


TITLE

Samsung PS50C7700 3D Plasma-TV 50" of DMCRUIS/0.1 Web Service disruption at the server (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2013-003492

DESCRIPTION

The DMCRUIS/0.1 web server on the Samsung PS50C7700 TV allows remote attackers to cause a denial of service (daemon crash) via a long URI to TCP port 5600. Samsung is a South Korean Samsung Electronics company, founded in 1969. Samsung PS50C7700 3D Plasma-TV is prone to denial-of-service vulnerability. Attackers can exploit this issue to cause a crash, denying service to legitimate users

Trust: 2.61

sources: NVD: CVE-2013-4890 // JVNDB: JVNDB-2013-003492 // CNVD: CNVD-2013-10552 // BID: 61391 // VULHUB: VHN-64892 // VULMON: CVE-2013-4890

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2013-10552

AFFECTED PRODUCTS

vendor:samsungmodel:ps50c7700 televisionscope:eqversion: -

Trust: 2.6

vendor:samsungmodel:ps50c7700 3d plasma-tv 50"scope: - version: -

Trust: 1.6

vendor:samsungmodel:tvscope:eqversion:0

Trust: 0.6

vendor:samsungmodel:ps50c7700 plasma-tvscope:eqversion:0

Trust: 0.3

sources: CNVD: CNVD-2013-10552 // BID: 61391 // JVNDB: JVNDB-2013-003492 // CNNVD: CNNVD-201307-471 // NVD: CVE-2013-4890

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2013-4890
value: HIGH

Trust: 1.0

NVD: CVE-2013-4890
value: HIGH

Trust: 0.8

CNVD: CNVD-2013-10552
value: MEDIUM

Trust: 0.6

CNNVD: CNNVD-201307-471
value: HIGH

Trust: 0.6

VULHUB: VHN-64892
value: HIGH

Trust: 0.1

VULMON: CVE-2013-4890
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2013-4890
severity: HIGH
baseScore: 7.8
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

CNVD: CNVD-2013-10552
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

VULHUB: VHN-64892
severity: HIGH
baseScore: 7.8
vectorString: AV:N/AC:L/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: CNVD: CNVD-2013-10552 // VULHUB: VHN-64892 // VULMON: CVE-2013-4890 // JVNDB: JVNDB-2013-003492 // CNNVD: CNNVD-201307-471 // NVD: CVE-2013-4890

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

sources: NVD: CVE-2013-4890

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201307-471

TYPE

Failure to Handle Exceptional Conditions

Trust: 0.3

sources: BID: 61391

CONFIGURATIONS

sources: JVNDB: JVNDB-2013-003492

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-64892 // VULMON: CVE-2013-4890

PATCH

title:PS50C7700 3D Plasma-TV 50"url:http://www.samsung.com/be/consumer/tv-audio-video/television/tv-archive/PS50C7000YWXXC

Trust: 0.8

title:UPnP_Boturl:https://github.com/LennisNgugi/UPnP_Bot

Trust: 0.1

title:Samsung-TV-Denial-of-Service-DoS-Attackurl:https://github.com/r00t-3xp10it/Samsung-TV-Denial-of-Service-DoS-Attack

Trust: 0.1

title: - url:https://github.com/2lambda123/Samsung-TV-Denial-of-Service-DoS-Attack

Trust: 0.1

sources: VULMON: CVE-2013-4890 // JVNDB: JVNDB-2013-003492

EXTERNAL IDS

db:NVDid:CVE-2013-4890

Trust: 3.5

db:BIDid:61391

Trust: 1.6

db:JVNDBid:JVNDB-2013-003492

Trust: 0.8

db:PACKETSTORMid:122502

Trust: 0.7

db:CNNVDid:CNNVD-201307-471

Trust: 0.7

db:CNVDid:CNVD-2013-10552

Trust: 0.6

db:EXPLOIT-DBid:27043

Trust: 0.2

db:SEEBUGid:SSVID-80663

Trust: 0.1

db:VULHUBid:VHN-64892

Trust: 0.1

db:VULMONid:CVE-2013-4890

Trust: 0.1

sources: CNVD: CNVD-2013-10552 // VULHUB: VHN-64892 // VULMON: CVE-2013-4890 // BID: 61391 // JVNDB: JVNDB-2013-003492 // CNNVD: CNNVD-201307-471 // NVD: CVE-2013-4890

REFERENCES

url:http://www.mmeit.be/exploits/samsungtv_reset.txt

Trust: 2.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2013-4890

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2013-4890

Trust: 0.8

url:http://packetstormsecurity.com/files/122502/samsung-tv-denial-of-service.html

Trust: 0.6

url:http://www.securityfocus.com/bid/61391

Trust: 0.6

url:http://www.samsung.com/nl/consumer/tv-audio-video/televisions/tv-archive/ps50c7000ywxxc

Trust: 0.3

url:http://www.samsung.com/

Trust: 0.3

url:https://cwe.mitre.org/data/definitions/.html

Trust: 0.1

url:https://github.com/lennisngugi/upnp_bot

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.exploit-db.com/exploits/27043/

Trust: 0.1

sources: CNVD: CNVD-2013-10552 // VULHUB: VHN-64892 // VULMON: CVE-2013-4890 // BID: 61391 // JVNDB: JVNDB-2013-003492 // CNNVD: CNNVD-201307-471 // NVD: CVE-2013-4890

CREDITS

Malik Mesellem

Trust: 0.9

sources: BID: 61391 // CNNVD: CNNVD-201307-471

SOURCES

db:CNVDid:CNVD-2013-10552
db:VULHUBid:VHN-64892
db:VULMONid:CVE-2013-4890
db:BIDid:61391
db:JVNDBid:JVNDB-2013-003492
db:CNNVDid:CNNVD-201307-471
db:NVDid:CVE-2013-4890

LAST UPDATE DATE

2025-04-11T23:16:37.571000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2013-10552date:2013-07-24T00:00:00
db:VULHUBid:VHN-64892date:2013-07-23T00:00:00
db:VULMONid:CVE-2013-4890date:2013-07-23T00:00:00
db:BIDid:61391date:2013-07-21T00:00:00
db:JVNDBid:JVNDB-2013-003492date:2013-07-24T00:00:00
db:CNNVDid:CNNVD-201307-471date:2013-07-24T00:00:00
db:NVDid:CVE-2013-4890date:2025-04-11T00:51:21.963

SOURCES RELEASE DATE

db:CNVDid:CNVD-2013-10552date:2013-07-24T00:00:00
db:VULHUBid:VHN-64892date:2013-07-23T00:00:00
db:VULMONid:CVE-2013-4890date:2013-07-23T00:00:00
db:BIDid:61391date:2013-07-21T00:00:00
db:JVNDBid:JVNDB-2013-003492date:2013-07-24T00:00:00
db:CNNVDid:CNNVD-201307-471date:2013-07-23T00:00:00
db:NVDid:CVE-2013-4890date:2013-07-23T11:03:12.550