5
CVSSv2

CVE-2008-4146

Published: 24/09/2008 Updated: 29/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Addalink 1.0 beta 4 and previous versions allows remote malicious users to (1) approve web-site additions via a modified approved field and (2) change the visit-counter value via a modified counter field.

Vulnerable Product Search on Vulmon Subscribe to Product

addalink addalink

Exploits

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= addalink <= 4 - beta / Write approved links without a previous moderation by the admin -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= $ Program: addalink $ Version: <= 4 - beta $ File affected: add_linkphp $ Downloa ...