Loading
The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authenticating.
Use CWE-200, Videolan vendor hub and Vlc Media Player product page to widen CVE-2013-3564 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-47359, CVE-2023-46814 and CVE-2022-41325 for nearby disclosures in the same product family.