Логотип exploitDog
bind:CVE-2009-3949
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-3949

Количество 2

Количество 2

nvd логотип

CVE-2009-3949

около 16 лет назад

cp/profile.php in VivaPrograms Infinity 2.0.5 and earlier does not require administrative authentication for the donewauthor action, which allows remote attackers to create administrative accounts via the name, password, and conf_password parameters.

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-7gwx-3v53-xrjm

почти 4 года назад

cp/profile.php in VivaPrograms Infinity 2.0.5 and earlier does not require administrative authentication for the donewauthor action, which allows remote attackers to create administrative accounts via the name, password, and conf_password parameters.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-3949

cp/profile.php in VivaPrograms Infinity 2.0.5 and earlier does not require administrative authentication for the donewauthor action, which allows remote attackers to create administrative accounts via the name, password, and conf_password parameters.

CVSS2: 7.5
2%
Низкий
около 16 лет назад
github логотип
GHSA-7gwx-3v53-xrjm

cp/profile.php in VivaPrograms Infinity 2.0.5 and earlier does not require administrative authentication for the donewauthor action, which allows remote attackers to create administrative accounts via the name, password, and conf_password parameters.

2%
Низкий
почти 4 года назад

Уязвимостей на страницу