4
CVE-2009-1055
- EPSS 1.15%
- Veröffentlicht 24.03.2009 14:30:00
- Zuletzt bearbeitet 16.06.2026 23:06:24
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Unspecified vulnerability in the web service in Sitecore CMS 5.3.1 rev. 071114 allows remote authenticated users to gain access to security databases, and obtain administrative and user credentials, via unknown vectors related to SOAP and XML requests.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.15% | 0.628 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|
http://sdn5.sitecore.net/Products/Sitecore%20V5/Sitecore%20CMS%205%2C-d-%2C3/ReleaseNotes/V5%2C-d-%2C3%2C-d-%2C2/ChangeLog.aspx
http://secunia.com/advisories/34356
http://www.securityfocus.com/archive/1/501929/100/0/threaded
http://www.securityfocus.com/bid/34162
http://www.vupen.com/english/advisories/2009/0753
https://exchange.xforce.ibmcloud.com/vulnerabilities/49298