7.5

CVE-2008-3504

Unspecified vulnerability in mask PHP File Manager (mPFM) before 2.3 has unknown impact and remote attack vectors related to "manipulation of cookies."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MpfmMask Php File Manager Version <= 2.2
MpfmMask Php File Manager Updatea Version <= 2.2
MpfmMask Php File Manager Updatec Version <= 2.2
MpfmMask Php File Manager Updated Version <= 2.2
MpfmMask Php File Manager Version1.0
MpfmMask Php File Manager Version1.1 Updatea
MpfmMask Php File Manager Version1.2
MpfmMask Php File Manager Version1.3
MpfmMask Php File Manager Version1.4
MpfmMask Php File Manager Version1.5
MpfmMask Php File Manager Version1.6
MpfmMask Php File Manager Version2.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.31% 0.509
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.