Vulnerability Description
Unspecified vulnerability in cron.php in FreeSeat before 1.1.5d, when format.php has certain modifications, allows remote attackers to bypass authentication and gain privileges via unspecified vectors related to the show_foot function.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Freeseat | Freeseat | <= 1.1.5c |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/28459Vendor Advisory
- http://sourceforge.net/project/shownotes.php?group_id=160239&release_id=568374
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39648
- http://secunia.com/advisories/28459Vendor Advisory
- http://sourceforge.net/project/shownotes.php?group_id=160239&release_id=568374
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39648
FAQ
What is CVE-2008-0293?
CVE-2008-0293 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Unspecified vulnerability in cron.php in FreeSeat before 1.1.5d, when format.php has certain modifications, allows remote attackers to bypass authentication and gain privileges via unspecified vectors...
How severe is CVE-2008-0293?
CVE-2008-0293 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0293?
Check the references section above for vendor advisories and patch information. Affected products include: Freeseat Freeseat.