Lucene search

K
nvd[email protected]NVD:CVE-2005-2320
HistoryJul 19, 2005 - 4:00 a.m.

CVE-2005-2320

2005-07-1904:00:00
web.nvd.nist.gov
3

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

75.3%

WebCalendar before 1.0.0 does not properly restrict access to assistant_edit.php, which allows remote attackers to gain privileges.

Affected configurations

Nvd
Node
webcalendarwebcalendarMatch0.9.8
OR
webcalendarwebcalendarMatch0.9.11
OR
webcalendarwebcalendarMatch0.9.15
OR
webcalendarwebcalendarMatch0.9.16
OR
webcalendarwebcalendarMatch0.9.19
OR
webcalendarwebcalendarMatch0.9.20
OR
webcalendarwebcalendarMatch0.9.21
OR
webcalendarwebcalendarMatch0.9.22
OR
webcalendarwebcalendarMatch0.9.23
OR
webcalendarwebcalendarMatch0.9.24
OR
webcalendarwebcalendarMatch0.9.25
OR
webcalendarwebcalendarMatch0.9.26
OR
webcalendarwebcalendarMatch0.9.27
OR
webcalendarwebcalendarMatch0.9.28
OR
webcalendarwebcalendarMatch0.9.29
OR
webcalendarwebcalendarMatch0.9.30
OR
webcalendarwebcalendarMatch0.9.31
OR
webcalendarwebcalendarMatch0.9.32
OR
webcalendarwebcalendarMatch0.9.33
OR
webcalendarwebcalendarMatch0.9.34
OR
webcalendarwebcalendarMatch0.9.35
OR
webcalendarwebcalendarMatch0.9.36
OR
webcalendarwebcalendarMatch0.9.37
OR
webcalendarwebcalendarMatch0.9.38
OR
webcalendarwebcalendarMatch0.9.39
OR
webcalendarwebcalendarMatch0.9.40
OR
webcalendarwebcalendarMatch0.9.41
OR
webcalendarwebcalendarMatch0.9.42
OR
webcalendarwebcalendarMatch0.9.43
OR
webcalendarwebcalendarMatch0.9.44
OR
webcalendarwebcalendarMatch0.9.45
OR
webcalendarwebcalendarMatch0.9.50
OR
webcalendarwebcalendarMatch1.0.0rc1
OR
webcalendarwebcalendarMatch1.0.0rc2
VendorProductVersionCPE
webcalendarwebcalendar0.9.8cpe:2.3:a:webcalendar:webcalendar:0.9.8:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.11cpe:2.3:a:webcalendar:webcalendar:0.9.11:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.15cpe:2.3:a:webcalendar:webcalendar:0.9.15:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.16cpe:2.3:a:webcalendar:webcalendar:0.9.16:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.19cpe:2.3:a:webcalendar:webcalendar:0.9.19:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.20cpe:2.3:a:webcalendar:webcalendar:0.9.20:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.21cpe:2.3:a:webcalendar:webcalendar:0.9.21:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.22cpe:2.3:a:webcalendar:webcalendar:0.9.22:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.23cpe:2.3:a:webcalendar:webcalendar:0.9.23:*:*:*:*:*:*:*
webcalendarwebcalendar0.9.24cpe:2.3:a:webcalendar:webcalendar:0.9.24:*:*:*:*:*:*:*
Rows per page:
1-10 of 341

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.7

Confidence

Low

EPSS

0.004

Percentile

75.3%