5
CVSSv2

CVE-2007-4494

Published: 23/08/2007 Updated: 27/07/2015
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The tipafriend function in eZ publish prior to 3.8.9, and 3.9 prior to 3.9.3, does not limit access by anonymous users, which allows remote malicious users to conduct spam attacks.

Vulnerable Product Search on Vulmon Subscribe to Product

ez ez publish 3.9.1

ez ez publish 3.9.2

ez ez publish

ez ez publish 3.9.0