Vulnerability Description
2532designs 2532|Gigs 1.2.2 and earlier allows remote attackers to trigger a backup and obtain sensitive information via a direct request to backup.php, which creates backup.sql under the web root with insufficient access control.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 2532Gigs | 2532Gigs | <= 1.2.2 |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41912
- https://www.exploit-db.com/exploits/5465
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41912
- https://www.exploit-db.com/exploits/5465
FAQ
What is CVE-2008-6199?
CVE-2008-6199 is a vulnerability with a CVSS score of 4.0 (MEDIUM). 2532designs 2532|Gigs 1.2.2 and earlier allows remote attackers to trigger a backup and obtain sensitive information via a direct request to backup.php, which creates backup.sql under the web root wit...
How severe is CVE-2008-6199?
CVE-2008-6199 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-6199?
Check the references section above for vendor advisories and patch information. Affected products include: 2532Gigs 2532Gigs.