René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

97 lines
2.6 KiB
JSON

{
"id": "CVE-2005-3209",
"sourceIdentifier": "cve@mitre.org",
"published": "2005-10-14T10:02:00.000",
"lastModified": "2017-07-11T01:33:08.190",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Aenovo products (1) aeNovo, (2) aeNovoShop, and (3) aeNovoWYSI store password information in plaintext in the (a) control, (b) content, and (c) page tables, which allows attackers with database access to obtain those passwords and gain privileges."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL",
"baseScore": 4.6
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 3.9,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": true,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:aenovo:aenovo:*:*:*:*:*:*:*:*",
"matchCriteriaId": "C0CA4376-FB7C-4FB3-AF36-E28907CB6A46"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:aenovo:aenovoshop:*:*:*:*:*:*:*:*",
"matchCriteriaId": "3E84793B-F90B-440D-B6DD-4F9F1D4EC431"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:aenovo:aenovowysi:*:*:*:*:*:*:*:*",
"matchCriteriaId": "A66F6D79-0C97-4458-921C-48AECE03973A"
}
]
}
]
}
],
"references": [
{
"url": "http://marc.info/?l=bugtraq&m=112872593432359&w=2",
"source": "cve@mitre.org"
},
{
"url": "http://www.kapda.ir/advisory-78.html",
"source": "cve@mitre.org",
"tags": [
"Exploit",
"Vendor Advisory"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/22549",
"source": "cve@mitre.org"
}
]
}