6.4

CVE-2008-1475

The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read restricted properties via the (1) list, (2) display, and (3) set methods.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Roundup-trackerRoundup Version <= 1.4.3
Roundup-trackerRoundup Version0.1.0
Roundup-trackerRoundup Version0.1.1
Roundup-trackerRoundup Version0.1.2
Roundup-trackerRoundup Version0.1.3
Roundup-trackerRoundup Version0.2.0
Roundup-trackerRoundup Version0.2.1
Roundup-trackerRoundup Version0.2.2
Roundup-trackerRoundup Version0.2.3
Roundup-trackerRoundup Version0.2.4
Roundup-trackerRoundup Version0.2.5
Roundup-trackerRoundup Version0.2.6
Roundup-trackerRoundup Version0.2.7
Roundup-trackerRoundup Version0.2.8
Roundup-trackerRoundup Version0.3.0
Roundup-trackerRoundup Version0.3.0 Updatepre1
Roundup-trackerRoundup Version0.3.0 Updatepre2
Roundup-trackerRoundup Version0.3.0 Updatepre3
Roundup-trackerRoundup Version0.4.0
Roundup-trackerRoundup Version0.4.0 Updateb1
Roundup-trackerRoundup Version0.4.0 Updateb2
Roundup-trackerRoundup Version0.4.1
Roundup-trackerRoundup Version0.4.2
Roundup-trackerRoundup Version0.4.2 Updatepr1
Roundup-trackerRoundup Version0.5
Roundup-trackerRoundup Version0.5.0
Roundup-trackerRoundup Version0.5.0 Updatebeta1
Roundup-trackerRoundup Version0.5.0 Updatebeta2
Roundup-trackerRoundup Version0.5.0 Updatepr1
Roundup-trackerRoundup Version0.5.1
Roundup-trackerRoundup Version0.5.2
Roundup-trackerRoundup Version0.5.3
Roundup-trackerRoundup Version0.5.4
Roundup-trackerRoundup Version0.5.5
Roundup-trackerRoundup Version0.5.6
Roundup-trackerRoundup Version0.5.7
Roundup-trackerRoundup Version0.5.8 Updatestable
Roundup-trackerRoundup Version0.5.9
Roundup-trackerRoundup Version0.6.0
Roundup-trackerRoundup Version0.6.0 Updateb1
Roundup-trackerRoundup Version0.6.0 Updateb2
Roundup-trackerRoundup Version0.6.0 Updateb3
Roundup-trackerRoundup Version0.6.0 Updateb4
Roundup-trackerRoundup Version0.6.1
Roundup-trackerRoundup Version0.6.2
Roundup-trackerRoundup Version0.6.3
Roundup-trackerRoundup Version0.6.4
Roundup-trackerRoundup Version0.6.5
Roundup-trackerRoundup Version0.6.6
Roundup-trackerRoundup Version0.6.7
Roundup-trackerRoundup Version0.6.8
Roundup-trackerRoundup Version0.6.9
Roundup-trackerRoundup Version0.6.10
Roundup-trackerRoundup Version0.6.11
Roundup-trackerRoundup Version0.7.0
Roundup-trackerRoundup Version0.7.0 Updateb1
Roundup-trackerRoundup Version0.7.0 Updateb2
Roundup-trackerRoundup Version0.7.0 Updateb3
Roundup-trackerRoundup Version0.7.1
Roundup-trackerRoundup Version0.7.2
Roundup-trackerRoundup Version0.7.3
Roundup-trackerRoundup Version0.7.4
Roundup-trackerRoundup Version0.7.5
Roundup-trackerRoundup Version0.7.6
Roundup-trackerRoundup Version0.7.7
Roundup-trackerRoundup Version0.7.8
Roundup-trackerRoundup Version0.7.9
Roundup-trackerRoundup Version0.7.10
Roundup-trackerRoundup Version0.7.11
Roundup-trackerRoundup Version0.7.12
Roundup-trackerRoundup Version0.8.0
Roundup-trackerRoundup Version0.8.0 Updateb1
Roundup-trackerRoundup Version0.8.0 Updateb2
Roundup-trackerRoundup Version0.8.1
Roundup-trackerRoundup Version0.8.2
Roundup-trackerRoundup Version0.8.3
Roundup-trackerRoundup Version0.8.4
Roundup-trackerRoundup Version0.8.5
Roundup-trackerRoundup Version0.8.6
Roundup-trackerRoundup Version0.9.0 Updateb1
Roundup-trackerRoundup Version1.0
Roundup-trackerRoundup Version1.0.1
Roundup-trackerRoundup Version1.1.0
Roundup-trackerRoundup Version1.1.1
Roundup-trackerRoundup Version1.1.2
Roundup-trackerRoundup Version1.2.0
Roundup-trackerRoundup Version1.2.1
Roundup-trackerRoundup Version1.3.0
Roundup-trackerRoundup Version1.3.1
Roundup-trackerRoundup Version1.3.2
Roundup-trackerRoundup Version1.3.3
Roundup-trackerRoundup Version1.4.0
Roundup-trackerRoundup Version1.4.1
Roundup-trackerRoundup Version1.4.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.47% 0.635
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:P/I:P/A:N