Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-4232

Опубликовано: 08 дек. 2009
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The Kide Shoutbox (com_kide) component 0.4.6 for Joomla! does not properly perform authentication, which allows remote attackers to post messages with an arbitrary account name via an insertar action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:jonijnm:com_kide:0.4.6:*:*:*:*:*:*:*
cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*

EPSS

Процентиль: 50%
0.00267
Низкий

5 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

github
почти 4 года назад

The Kide Shoutbox (com_kide) component 0.4.6 for Joomla! does not properly perform authentication, which allows remote attackers to post messages with an arbitrary account name via an insertar action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS

Процентиль: 50%
0.00267
Низкий

5 Medium

CVSS2

Дефекты

CWE-287