6.8

CVE-2008-6747

dotProject before 2.1.2 does not properly restrict access to administrative pages, which allows remote attackers to gain privileges.  NOTE: some of these details are obtained from third party information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DotprojectDotproject Version <= 2.1.1
DotprojectDotproject Version0.2.1.5
DotprojectDotproject Version2.0
DotprojectDotproject Version2.0.1
DotprojectDotproject Version2.0.2
DotprojectDotproject Version2.0.3
DotprojectDotproject Version2.0.4
DotprojectDotproject Version2.1
DotprojectDotproject Version2.1 Updaterc2
DotprojectDotproject Version2.1.0 Updaterc1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.2% 0.642
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/46143
http://secunia.com/advisories/30470
Vendor Advisory
http://sourceforge.net/project/shownotes.php?group_id=21656&release_id=616346
http://www.securityfocus.com/bid/29679
https://exchange.xforce.ibmcloud.com/vulnerabilities/43019