Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-2424

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2008-2424
Last Modified 08 Apr 2009 01:26:11
Published 23 May 2008 11:33:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-2424

Summary

Unspecified vulnerability in the 404 error page for the "Standard demo" in Interchange before 5.6.0 and before 5.5.2 has unknown impact and attack vectors.

Vulnerable Systems

Application

  • Icdevgroup Interchange 4.5.6

  • Icdevgroup Interchange 4.5.7

  • Icdevgroup Interchange 4.5.8

  • Icdevgroup Interchange 4.6.0

  • Icdevgroup Interchange 4.6.1

  • Icdevgroup Interchange 4.6.2

  • Icdevgroup Interchange 4.6.4

  • Icdevgroup Interchange 4.6.5

  • Icdevgroup Interchange 4.7.6

  • Icdevgroup Interchange 4.7.7

  • Icdevgroup Interchange 4.8.2

  • Icdevgroup Interchange 4.8.3

  • Icdevgroup Interchange 4.8.4

  • Icdevgroup Interchange 4.8.5

  • Icdevgroup Interchange 4.8.6

  • Icdevgroup Interchange 4.8.7

  • Icdevgroup Interchange 4.8.9

  • Icdevgroup Interchange 4.9.1

  • Icdevgroup Interchange 4.9.2

  • Icdevgroup Interchange 4.9.4

  • Icdevgroup Interchange 4.9.5

  • Icdevgroup Interchange 4.9.8

  • Icdevgroup Interchange 4.9.9

  • Icdevgroup Interchange 5.0.0

  • Icdevgroup Interchange 5.0.1

  • Icdevgroup Interchange 5.1.0

  • Icdevgroup Interchange 5.1.1

  • Icdevgroup Interchange 5.2.0

  • Icdevgroup Interchange 5.3.2

  • Icdevgroup Interchange 5.3.3

  • Icdevgroup Interchange 5.4.0

  • Icdevgroup Interchange 5.4.1

  • Icdevgroup Interchange 5.4.2

  • Icdevgroup Interchange 5.5.1

  • Icdevgroup Interchange 5.5.2

  • Icdevgroup Interchange 5.5.3


References

SECUNIA - 30346

XF - interchange-404-security-bypass(42583)

VUPEN - ADV-2008-1621

CONFIRM - http://ftp.icdevgroup.org/pub/interchange/5.5/ANNOUNCEMENT-5.5.2.txt

CONFIRM - http://ftp.icdevgroup.org/interchange/5.6/ANNOUNCEMENT-5.6.0.txt


Last Updated: 27 May 2016 10:47:52