PT-2008-5802 · Belong · Belong Software Site Builder

Romancyxhacker

·

Publicado

2008-10-15

·

Atualizado

2018-10-11

·

CVE-2008-4585

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Belong Software Site Builder version 0.1 beta
Description The issue allows remote attackers to bypass intended access restrictions and perform administrative actions. This is achieved via a direct request to the "admin/home.php" endpoint.
Recommendations For Belong Software Site Builder version 0.1 beta, consider restricting access to the "admin/home.php" endpoint until a patch is available.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-4585

Produtos afetados

Belong Software Site Builder