Lucene search

K
cveMitreCVE-2008-6541
HistoryMar 30, 2009 - 1:30 a.m.

CVE-2008-6541

2009-03-3001:30:00
CWE-20
mitre
web.nvd.nist.gov
27
cve-2008-6541
unrestricted file upload
dotnetnuke
file manager module
remote administrators
arbitrary files
server privileges

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.2

Confidence

Low

EPSS

0.004

Percentile

72.7%

Unrestricted file upload vulnerability in the file manager module in DotNetNuke before 4.8.2 allows remote administrators to upload arbitrary files and gain privileges to the server via unspecified vectors.

Affected configurations

Nvd
Node
dotnetnukedotnetnukeRange4.8.1
OR
dotnetnukedotnetnukeMatch1.0.6
OR
dotnetnukedotnetnukeMatch1.0.7
OR
dotnetnukedotnetnukeMatch1.0.8
OR
dotnetnukedotnetnukeMatch1.0.9
OR
dotnetnukedotnetnukeMatch1.0.10d
OR
dotnetnukedotnetnukeMatch1.0.10e
OR
dotnetnukedotnetnukeMatch2.1.1
OR
dotnetnukedotnetnukeMatch2.1.2
OR
dotnetnukedotnetnukeMatch3.0.7
OR
dotnetnukedotnetnukeMatch3.0.8
OR
dotnetnukedotnetnukeMatch3.0.11
OR
dotnetnukedotnetnukeMatch3.1.0
OR
dotnetnukedotnetnukeMatch3.3.5
OR
dotnetnukedotnetnukeMatch4.0
OR
dotnetnukedotnetnukeMatch4.3.5
OR
dotnetnukedotnetnukeMatch4.5.2
VendorProductVersionCPE
dotnetnukedotnetnuke*cpe:2.3:a:dotnetnuke:dotnetnuke:*:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.6cpe:2.3:a:dotnetnuke:dotnetnuke:1.0.6:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.7cpe:2.3:a:dotnetnuke:dotnetnuke:1.0.7:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.8cpe:2.3:a:dotnetnuke:dotnetnuke:1.0.8:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.9cpe:2.3:a:dotnetnuke:dotnetnuke:1.0.9:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.10dcpe:2.3:a:dotnetnuke:dotnetnuke:1.0.10d:*:*:*:*:*:*:*
dotnetnukedotnetnuke1.0.10ecpe:2.3:a:dotnetnuke:dotnetnuke:1.0.10e:*:*:*:*:*:*:*
dotnetnukedotnetnuke2.1.1cpe:2.3:a:dotnetnuke:dotnetnuke:2.1.1:*:*:*:*:*:*:*
dotnetnukedotnetnuke2.1.2cpe:2.3:a:dotnetnuke:dotnetnuke:2.1.2:*:*:*:*:*:*:*
dotnetnukedotnetnuke3.0.7cpe:2.3:a:dotnetnuke:dotnetnuke:3.0.7:*:*:*:*:*:*:*
Rows per page:
1-10 of 171

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.2

Confidence

Low

EPSS

0.004

Percentile

72.7%

Related for CVE-2008-6541