Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-4614

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2008-4614
Last Modified 29 Jan 2009 01:56:55
Published 20 Oct 2008 02:14:04
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-4614

Summary

PortalApp 4.0 does not require authentication for (1) forums.asp and (2) content.asp, which allows remote attackers to create and delete forums, topics, and replies.

Vulnerable Systems

Application

  • Portalapp 4.0


References

CONFIRM - http://www.aspapp.com/content.asp?CatId=197&ContentType=Downloads

XF - portalapp-multiple-authentication-bypass(39457)

BID - 27170

MILW0RM - 4848

SREASON - 4439

SECUNIA - 28337


Last Updated: 27 May 2016 10:48:34