Vulnerability Description
nbmember.cgi in Netbilling 2.0 allows remote attackers to obtain sensitive information via the cmd=test option, which can be leveraged to determine the access key.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netbilling | Netbilling | 2.0 |
Related Weaknesses (CWE)
References
- http://securitytracker.com/id?1011881
- http://web.archive.org/web/20041106200147/http://www.it-helpnet.de/bugless/bugs.
- http://www.osvdb.org/10902
- http://www.securityfocus.com/bid/11504Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17865
- http://securitytracker.com/id?1011881
- http://web.archive.org/web/20041106200147/http://www.it-helpnet.de/bugless/bugs.
- http://www.osvdb.org/10902
- http://www.securityfocus.com/bid/11504Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17865
FAQ
What is CVE-2004-2732?
CVE-2004-2732 is a vulnerability with a CVSS score of 4.3 (MEDIUM). nbmember.cgi in Netbilling 2.0 allows remote attackers to obtain sensitive information via the cmd=test option, which can be leveraged to determine the access key.
How severe is CVE-2004-2732?
CVE-2004-2732 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-2732?
Check the references section above for vendor advisories and patch information. Affected products include: Netbilling Netbilling.