mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-05-28 01:02:55 +00:00
147 lines
5.0 KiB
JSON
147 lines
5.0 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "cve@mitre.org",
|
|
"ID": "CVE-2005-2474",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "ChurchInfo allows remote attackers to execute obtain sensitive information via the PersonID parameter to (1) PersonView.php, (2) MemberRoleChange.php, (3) PropertyAssign.php, (4) WhyCameEditor.php, (5) GroupPropsEditor.php, (6) Reports/PDFLabel.php, or (7) UserDelete.php, an invalid Number parameter to (8) SelectList.php or (9) SelectDelete.php, GroupID parameter to (10) GroupView.php, (11) GroupMemberList.php, (12) MemberRoleChange.php, (13) GroupDelete.php, (14) /Reports/ClassAttendance.php, or (15) /Reports/GroupReport.php, (16) PropertyID parameter to PropertyEditor.php, FamilyID parameter to (17) Canvas05Editor.php, (18) CanvasEditor.php, or (19) FamilyView.php, or (20) PledgeID parameter to PledgeDetails.php, which reveal the path in an error message."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "18430",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18430"
|
|
},
|
|
{
|
|
"name": "18450",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18450"
|
|
},
|
|
{
|
|
"name": "18432",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18432"
|
|
},
|
|
{
|
|
"name": "18435",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18435"
|
|
},
|
|
{
|
|
"name": "20050801 ChurchInfo Multiple Vulnerabilities",
|
|
"refsource": "BUGTRAQ",
|
|
"url": "http://marc.info/?l=bugtraq&m=112291550713546&w=2"
|
|
},
|
|
{
|
|
"name": "18425",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18425"
|
|
},
|
|
{
|
|
"name": "churchinfo-path-disclosure(21648)",
|
|
"refsource": "XF",
|
|
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/21648"
|
|
},
|
|
{
|
|
"name": "18426",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18426"
|
|
},
|
|
{
|
|
"name": "1014617",
|
|
"refsource": "SECTRACK",
|
|
"url": "http://securitytracker.com/id?1014617"
|
|
},
|
|
{
|
|
"name": "18439",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18439"
|
|
},
|
|
{
|
|
"name": "18437",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18437"
|
|
},
|
|
{
|
|
"name": "18429",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18429"
|
|
},
|
|
{
|
|
"name": "18431",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18431"
|
|
},
|
|
{
|
|
"name": "18433",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18433"
|
|
},
|
|
{
|
|
"name": "18438",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18438"
|
|
},
|
|
{
|
|
"name": "18436",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18436"
|
|
},
|
|
{
|
|
"name": "18434",
|
|
"refsource": "OSVDB",
|
|
"url": "http://www.osvdb.org/18434"
|
|
},
|
|
{
|
|
"name": "16292",
|
|
"refsource": "SECUNIA",
|
|
"url": "http://secunia.com/advisories/16292"
|
|
}
|
|
]
|
|
}
|
|
} |