René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

98 lines
2.8 KiB
JSON

{
"id": "CVE-2008-4050",
"sourceIdentifier": "cve@mitre.org",
"published": "2008-09-11T21:06:48.023",
"lastModified": "2017-09-29T01:31:57.397",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to (1) create and read arbitrary registry values via the RegistryValue method, and (2) read arbitrary files via the GetTextFile method."
},
{
"lang": "es",
"value": "Cierto control ActiveX en el archivo fwRemoteCfg.dll 3.3.3.1 en Friendly Technologies FriendlyPPPoE Client 3.0.0.57 permite a los atacantes remotos (1) crear y leer arbitrariamente valores del registro a trav\u00e9s del m\u00e9todo RegistryValue, y (2) leer arbitrariamente archivos a trav\u00e9s del m\u00e9todo GetTextFile."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C",
"accessVector": "NETWORK",
"accessComplexity": "MEDIUM",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 9.3
},
"baseSeverity": "HIGH",
"exploitabilityScore": 8.6,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": true
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:friendly_technologies:friendly_pppoe_client:3.0.0.57:*:*:*:*:*:*:*",
"matchCriteriaId": "E5CA25C8-5730-4EC7-A171-67D76B35BCCB"
}
]
}
]
}
],
"references": [
{
"url": "http://securityreason.com/securityalert/4244",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/30939",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/30940",
"source": "cve@mitre.org",
"tags": [
"Exploit"
]
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44787",
"source": "cve@mitre.org"
},
{
"url": "https://www.exploit-db.com/exploits/6334",
"source": "cve@mitre.org"
}
]
}