{ "id": "CVE-2009-1206", "sourceIdentifier": "cve@mitre.org", "published": "2009-04-01T10:30:00.313", "lastModified": "2017-08-17T01:30:13.723", "vulnStatus": "Modified", "descriptions": [ { "lang": "en", "value": "Unspecified vulnerability in futomi's CGI Cafe Access Analyzer CGI Professional Version 4.11.5 and earlier allows remote attackers to gain administrative privileges via unknown vectors." }, { "lang": "es", "value": "Vulnerabilidad no especificada en futomi's CGI Cafe Access Analyzer CGI Professional Version v4.11.5 y anteriroes, permite a atacantes remotos obtener privilegios de administrador a trav\u00e9s de vectores desconocidos." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "accessVector": "NETWORK", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL", "baseScore": 7.5 }, "baseSeverity": "HIGH", "exploitabilityScore": 10.0, "impactScore": 6.4, "acInsufInfo": true, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-noinfo" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.9", "matchCriteriaId": "8CBEE32F-8BF8-4140-B593-CAA1FE0D7C72" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10", "matchCriteriaId": "970A9B75-0F76-4169-8BFB-CFB01066B336" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10.1", "matchCriteriaId": "91DAA5BF-E021-4574-B405-E790D68595B7" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10.2", "matchCriteriaId": "E30ECDFB-E285-4EC3-A6E6-039E7E631280" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10.3", "matchCriteriaId": "20FECDCD-9DEC-4A35-B064-0CAE63A40C5E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10.4", "matchCriteriaId": "BB71FBCF-8684-4223-A569-266BB22B8775" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.10.5", "matchCriteriaId": "3A315ABE-B665-41EC-A033-2CAAF6A2ACAC" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.0", "matchCriteriaId": "042989AC-85A8-477A-90B0-05F04315BA96" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.1", "matchCriteriaId": "AB1D34F7-4456-43F1-87DF-C02D6AEBC955" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.2", "matchCriteriaId": "C7E17260-2D0C-4A77-AB25-69648BD97839" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.3", "matchCriteriaId": "341B90EC-4E75-448C-9FC3-C2132A00B31B" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.4", "matchCriteriaId": "C8BF7F88-1C96-49F2-B502-15FFD3804E3E" }, { "vulnerable": true, "criteria": "cpe:2.3:a:futomi:cgi_cafe_access_analyzer_cgi:*:pro:*:*:*:*:*:*", "versionEndIncluding": "4.11.5", "matchCriteriaId": "34238598-9C96-4FEF-B9EF-EA630663C6F4" } ] } ] } ], "references": [ { "url": "http://jvn.jp/en/jp/JVN63511247/index.html", "source": "cve@mitre.org" }, { "url": "http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-000016.html", "source": "cve@mitre.org" }, { "url": "http://www.futomi.com/library/info/2009/20090331.html", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] }, { "url": "http://www.securityfocus.com/bid/34315", "source": "cve@mitre.org" }, { "url": "http://www.vupen.com/english/advisories/2009/0888", "source": "cve@mitre.org" }, { "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/49525", "source": "cve@mitre.org" } ] }