6.4
CVSSv2

CVE-2008-5283

Published: 29/11/2008 Updated: 02/12/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Google Hack Honeypot (GHH) File Upload Manager 1.3 allows remote malicious users to delete uploaded files via unknown vectors related to the delall action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. CVE analysis suggests that the most recent version as of 20081128 is 1.2, and the File Upload Manager does not have a "delall" action.

Vulnerable Product Search on Vulmon Subscribe to Product

ghh google hack honeypot file upload manager 1.3

Exploits

source: wwwsecurityfocuscom/bid/27877/info Google Hack Honeypot File Upload Manager is prone to an unauthorized file-access vulnerability This issue occurs because the application fails to validate users before processing a certain HTTP request Attackers can exploit this issue to delete all files that have been uploaded to the applicat ...