2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2008-4793" ,
"sourceIdentifier" : "cve@mitre.org" ,
"published" : "2008-10-29T15:31:35.603" ,
"lastModified" : "2017-08-08T01:32:55.517" ,
"vulnStatus" : "Modified" ,
"descriptions" : [
{
"lang" : "en" ,
"value" : "The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified other impact via unknown vectors related to contributed modules."
} ,
{
"lang" : "es" ,
"value" : "El API del m\u00f3dulo nodo en Drupal 5.x anterior a 5.11 permite a un atacante remoto evitar la validaci\u00f3n del nodo, y tiene otros impactos por medio de ataques desconocidos relacionados con los m\u00f3dulos contribu\u00eddos."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:P/A:P" ,
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "PARTIAL" ,
"availabilityImpact" : "PARTIAL" ,
"baseScore" : 7.5
} ,
"baseSeverity" : "HIGH" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 6.4 ,
"acInsufInfo" : true ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : true ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-264"
} ,
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "5.10" ,
"matchCriteriaId" : "482347F6-0F92-4B6F-ACA9-7F6875D32726"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BDBE79A6-5762-4A7C-8FDA-C11FFFDCFC9B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.0:beta1:*:*:*:*:*:*" ,
"matchCriteriaId" : "45BE66AB-3491-42CB-8594-AB041D15EA23"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.0:beta2:*:*:*:*:*:*" ,
"matchCriteriaId" : "F6334858-DF62-467A-9126-6F0AD32D325F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.0:rc1:*:*:*:*:*:*" ,
"matchCriteriaId" : "A677D3A4-F15C-4287-94B3-4CAADA4679D2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.0:rc2:*:*:*:*:*:*" ,
"matchCriteriaId" : "24DAB8DE-2459-484C-88B5-9812CFBDC60F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A5BCAB7B-DF79-4DB8-A5C4-731F251A02A2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E5AEAB73-F7A9-4C62-BCB6-1028DAF149DB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FF34F79B-6B1B-45CA-82BA-24D4254B26DF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1C4C5857-3690-4D74-B135-B6AB7E766FB7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1EC12E03-C4B0-4B2F-B70B-0EB19C450AB2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FD50E551-7609-45EF-B2C6-3873D9CF8DB6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "327712EE-8E9B-4A62-94A8-504C9CD2DE97"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0C4FC56B-0289-411C-88BF-144D7338D456"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:drupal:drupal:5.9:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ED3ECEA7-E6D3-43E8-A281-56C7F95A0B7F"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://drupal.org/node/318706" ,
"source" : "cve@mitre.org" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
} ,
2024-04-04 08:46:00 +00:00
{
"url" : "http://secunia.com/advisories/32200" ,
"source" : "cve@mitre.org"
} ,
2023-04-24 12:24:31 +02:00
{
"url" : "http://www.openwall.com/lists/oss-security/2008/10/21/7" ,
"source" : "cve@mitre.org"
} ,
{
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/45763" ,
"source" : "cve@mitre.org"
}
]
}