Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3041

Опубликовано: 01 сент. 2009
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

SPIP 1.9 before 1.9.2i and 2.0.x through 2.0.8 does not use proper access control for (1) ecrire/exec/install.php and (2) ecrire/index.php, which allows remote attackers to conduct unauthorized activities related to installation and backups, as exploited in the wild in August 2009.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

2.0.9-1
hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

ignored

end of life
lucid

not-affected

2.0.9-1
maverick

not-affected

2.0.9-1
natty

not-affected

2.0.9-1
upstream

needs-triage

Показывать по

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 16 лет назад

SPIP 1.9 before 1.9.2i and 2.0.x through 2.0.8 does not use proper access control for (1) ecrire/exec/install.php and (2) ecrire/index.php, which allows remote attackers to conduct unauthorized activities related to installation and backups, as exploited in the wild in August 2009.

debian
больше 16 лет назад

SPIP 1.9 before 1.9.2i and 2.0.x through 2.0.8 does not use proper acc ...

github
больше 3 лет назад

SPIP 1.9 before 1.9.2i and 2.0.x through 2.0.8 does not use proper access control for (1) ecrire/exec/install.php and (2) ecrire/index.php, which allows remote attackers to conduct unauthorized activities related to installation and backups, as exploited in the wild in August 2009.

7.5 High

CVSS2