Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-4282

Опубликовано: 09 авг. 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

The "Extended properties for entries" (entryproperties) plugin in serendipity_event_entryproperties.php in Serendipity 1.1.3 allows remote authenticated users to bypass password protection and "deliver custom entryproperties settings to the Serendipity Frontend" via a certain request that modifies the password being checked.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

edgy

DNE

feisty

ignored

end of life, was needed
gutsy

not-affected

hardy

not-affected

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 60%
0.00401
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
около 18 лет назад

The "Extended properties for entries" (entryproperties) plugin in serendipity_event_entryproperties.php in Serendipity 1.1.3 allows remote authenticated users to bypass password protection and "deliver custom entryproperties settings to the Serendipity Frontend" via a certain request that modifies the password being checked.

debian
около 18 лет назад

The "Extended properties for entries" (entryproperties) plugin in sere ...

github
больше 3 лет назад

The "Extended properties for entries" (entryproperties) plugin in serendipity_event_entryproperties.php in Serendipity 1.1.3 allows remote authenticated users to bypass password protection and "deliver custom entryproperties settings to the Serendipity Frontend" via a certain request that modifies the password being checked.

EPSS

Процентиль: 60%
0.00401
Низкий

5 Medium

CVSS2