CVE Vulnerabilities

CVE-2009-4091

Published: Nov 29, 2009 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

comments.php in Simplog 0.9.3.2, and possibly earlier, does not properly restrict access, which allows remote attackers to edit or delete comments via the (1) edit or (2) del action.

Affected Software

Name Vendor Start Version End Version
Simplog Simplog 0.9.3.2 (including) 0.9.3.2 (including)

References