5

CVE-2004-1828

Exploit
Vcard 2.9 and possibly other versions does not require authorization to run uninstall.php, which could allow remote attackers to uninstall Vcard and delete database tables via a direct request to uninstall.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Belchior Foundry ≫ Vcard Version 2.8
Belchior Foundry ≫ Vcard Version 2.9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.41% 0.82
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=107957312531199&w=2
http://www.securityfocus.com/bid/9910
Patch
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/15522