{ "id": "CVE-2009-0806", "sourceIdentifier": "cve@mitre.org", "published": "2009-03-04T17:30:02.530", "lastModified": "2009-03-05T05:00:00.000", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in OpenGoo before 1.2.1 allows remote authenticated users to modify their own permissions via unknown attack vectors." }, { "lang": "es", "value": "Vulnerabilidad no especificada en OpenGoo anterior a v1.2.1, permite a usuarios autenticados en remoto modificar sus propios permisos a trav\u00e9s de vectores de ataque desconocidos." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "SINGLE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL", "baseScore": 6.5 }, "baseSeverity": "MEDIUM", "exploitabilityScore": 8.0, "impactScore": 6.4, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": true, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-264" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:*:*:*:*:*:*:*:*", "versionEndIncluding": "1.2", "matchCriteriaId": "DADAA5EA-129C-4D0D-8CC7-BCAEF89D3D0C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.1:alpha:*:*:*:*:*:*", "matchCriteriaId": "E2B9EE25-A6BF-4302-87FA-323FEFF91117" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.2:alpha:*:*:*:*:*:*", "matchCriteriaId": "6BA125B0-E18B-4D42-AFC6-B77EC15F90A7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.3:alpha:*:*:*:*:*:*", "matchCriteriaId": "30F9527B-092A-43F5-8D0E-A4F992BDEB0F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.4:alpha:*:*:*:*:*:*", "matchCriteriaId": "EEC65EA3-425F-4351-9038-0923C5EFEFE0" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.5:beta:*:*:*:*:*:*", "matchCriteriaId": "09A10638-8F6E-4CEB-9521-D5D8CEFE9BFF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.5.1:beta:*:*:*:*:*:*", "matchCriteriaId": "AA8AEB76-5E1A-44F7-BB4E-6D9FC076B70C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.5.2:beta:*:*:*:*:*:*", "matchCriteriaId": "8652824E-FE62-42CC-A30B-FA92BBAA3840" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.6.0:*:*:*:*:*:*:*", "matchCriteriaId": "A366E561-630C-4C23-93B7-DA3A926FA474" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.6.2:*:*:*:*:*:*:*", "matchCriteriaId": "41036BEC-ECBD-4966-974F-3D99245D2325" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.6.4:*:*:*:*:*:*:*", "matchCriteriaId": "31075C8F-BFCD-49AC-81F7-EEB5B04964D7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.6.6:*:*:*:*:*:*:*", "matchCriteriaId": "0C038758-7C32-4C24-8D6D-BF52EEF3209F" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.7:*:*:*:*:*:*:*", "matchCriteriaId": "2E775DC5-909E-4F3E-97D6-3894FF2F3CDA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.7.1:*:*:*:*:*:*:*", "matchCriteriaId": "466AAA19-4C1F-44D5-934A-DE853254E13D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.8:*:*:*:*:*:*:*", "matchCriteriaId": "17857BBF-BB51-41D0-A5FD-7011108A1BB8" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.9:*:*:*:*:*:*:*", "matchCriteriaId": "29540269-2D98-4AA0-AC7A-F00B3CA67F93" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.9:rc2:*:*:*:*:*:*", "matchCriteriaId": "E325F5A3-6180-45D6-B4B6-125FE1597EE6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.9.1:*:*:*:*:*:*:*", "matchCriteriaId": "32B1BD62-0467-4E14-AC91-E4DAADBC3279" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:0.9.2:*:*:*:*:*:*:*", "matchCriteriaId": "71D567F5-6923-4C82-BCBB-5FFB15697137" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.0:*:*:*:*:*:*:*", "matchCriteriaId": "EC271E48-FC40-4A84-8660-12572DEFE02A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.0:rc1:*:*:*:*:*:*", "matchCriteriaId": "DFD757BE-4DA1-46B0-A899-31CDB1B38D0B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.0:rc2:*:*:*:*:*:*", "matchCriteriaId": "BA77B2A5-2FDF-4154-A97E-AE10D54BAF37" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.0:rc3:*:*:*:*:*:*", "matchCriteriaId": "C2CABFDE-DD6A-47A3-A485-CC6204B6D037" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.1:*:*:*:*:*:*:*", "matchCriteriaId": "7DC6587D-86F4-441A-B6CA-9603956C9B74" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.1:beta:*:*:*:*:*:*", "matchCriteriaId": "1036853A-BDE7-482A-895C-ACD20A75AE5B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.1:rc1:*:*:*:*:*:*", "matchCriteriaId": "BD7A6292-1DAB-4706-BBB0-F37F171ADEC4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.1:rc2:*:*:*:*:*:*", "matchCriteriaId": "A3DDCBB7-E133-4D46-965F-B5C335DFA8B6" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.2:beta:*:*:*:*:*:*", "matchCriteriaId": "E02268FF-33B7-41C4-9233-D994C730FFF3" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.2:beta_2:*:*:*:*:*:*", "matchCriteriaId": "99B3FC64-BB6A-4E06-9C88-15EA2D044745" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.2:rc1:*:*:*:*:*:*", "matchCriteriaId": "EBF5947A-F624-4544-88E0-2E2D3C72973B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:opengoo:opengoo:1.2:rc2:*:*:*:*:*:*", "matchCriteriaId": "9D124D00-EB61-493A-85F3-9B73F8CCAD87" } ] } ] } ], "references": [ { "url": "http://sourceforge.net/project/shownotes.php?release_id=663706", "source": "cve@mitre.org" }, { "url": "http://www.securityfocus.com/bid/33897", "source": "cve@mitre.org", "tags": [ "Patch" ] } ] }