PT-2007-2830 · Sql Ledger+1 · Sql-Ledger+1

Publicado

2007-03-13

·

Atualizado

2018-10-16

·

CVE-2007-1436

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SQL-Ledger versions prior to 2.6.26 LedgerSMB versions prior to 1.1.9
Description The issue allows remote attackers to bypass authentication through unknown vectors, preventing a password check from occurring. This is due to an unspecified vulnerability in the admin.pl component.
Recommendations For SQL-Ledger versions prior to 2.6.26, update to version 2.6.26 or later. For LedgerSMB versions prior to 1.1.9, update to version 1.1.9 or later.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-1436

Produtos afetados

Ledgersmb
Sql-Ledger