5

CVE-2006-5909

generaloptions.php in Paul Tarjan Stanford Conference And Research Forum (SCARF) before 20070227 does not require the admin privilege, which allows remote attackers to reconfigure the application or its user accounts.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.53% 0.715
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/24311
Vendor Advisory
http://sourceforge.net/project/shownotes.php?group_id=177652&release_id=489633
http://www.securityfocus.com/archive/1/450679/100/0/threaded
http://www.securityfocus.com/archive/1/460196/100/0/threaded
http://www.securityfocus.com/bid/20934
http://www.vupen.com/english/advisories/2007/0760
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/30037
https://exchange.xforce.ibmcloud.com/vulnerabilities/32700