Lucene search

K
cvelistMitreCVELIST:CVE-2008-7188
HistorySep 09, 2009 - 5:00 p.m.

CVE-2008-7188

2009-09-0917:00:00
mitre
www.cve.org

6.9 Medium

AI Score

Confidence

Low

0.022 Low

EPSS

Percentile

89.4%

ClipShare 2.6 does not properly restrict access to certain functionality, which allows remote attackers to change the profile of arbitrary users via a modified uid variable to siteadmin/useredit.php. NOTE: this can be used to recover the password of the user by using the modified e-mail address in the email parameter to recoverpass.php.

6.9 Medium

AI Score

Confidence

Low

0.022 Low

EPSS

Percentile

89.4%

Related for CVELIST:CVE-2008-7188