PT-2004-2727 · Vcard · Vcard

Saudi Linux

·

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-1828

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Vcard version 2.9
Description The issue allows remote attackers to uninstall Vcard and delete database tables without authorization by making a direct request to "uninstall.php".
Recommendations For Vcard version 2.9, consider restricting access to the "uninstall.php" script to prevent unauthorized uninstallation and data deletion.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1828

Affected Products

Vcard