PT-2011-1450 · Contents Mall · Contents-Mall
Published
2011-01-13
·
Updated
2017-08-17
·
CVE-2010-3925
CVSS v2.0
5.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Contents-Mall versions prior to 15
Description
The issue allows remote attackers to discover the administrative password, and consequently obtain sensitive information or modify data, via unspecified vectors. This is due to improper handling of passwords.
Recommendations
For versions prior to 15, update to version 15 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive information and modifying data until the update is applied.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Contents-Mall