Vulnerability Description
Multiple unspecified vulnerabilities in SAPID CMS before 1.2.3.03, related to newly registered users and possibly authorization checks, have unknown impact and attack vectors involving (1) mvc/controller/user_request_analysis.inc.php and (2) usr/xml/ddc/authorization.xml.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Redgraphic | Sapid Cms | <= 1.2.3.02 |
References
- http://sapid-club.com/en/viewtopic.php?p=586#586URL Repurposed
- http://sourceforge.net/project/shownotes.php?release_id=375289&group_id=118100
- http://sapid-club.com/en/viewtopic.php?p=586#586URL Repurposed
- http://sourceforge.net/project/shownotes.php?release_id=375289&group_id=118100
FAQ
What is CVE-2005-4007?
CVE-2005-4007 is a vulnerability with a CVSS score of 10.0 (HIGH). Multiple unspecified vulnerabilities in SAPID CMS before 1.2.3.03, related to newly registered users and possibly authorization checks, have unknown impact and attack vectors involving (1) mvc/control...
How severe is CVE-2005-4007?
CVE-2005-4007 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2005-4007?
Check the references section above for vendor advisories and patch information. Affected products include: Redgraphic Sapid Cms.