CVE-2013-3137: Microsoft Frontpage

Medium severity, CVSS 4.3. EPSS: 30% chance of exploitation in the next 30 days.

Microsoft FrontPage 2003 SP3 does not properly parse DTDs, which allows remote attackers to obtain sensitive information via crafted XML data in a FrontPage document, aka "XML Disclosure Vulnerability."

Affected products

Published 2013-09-11. Last modified 2026-06-16.