5.5
CVSSv2

CVE-2011-3993

Published: 03/11/2011 Updated: 16/11/2011
CVSS v2 Base Score: 5.5 | Impact Score: 4.9 | Exploitability Score: 8
VMScore: 490
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:P

Vulnerability Summary

SKYARC MTCMS prior to 5.252, and the MultiFileUploader 0.44 and previous versions, DuplicateEntry 1.2 and previous versions, MailPack 1.741 and previous versions, and AutoTagging 0.08 and previous versions plugins for Movable Type, uses weak permissions, which allows remote authenticated users to modify files and settings via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

skyarc mtcms 5.24

skyarc multifileuploader

skyarc mailpack

skyarc mtcms 5.251

skyarc mtcms 5.25

skyarc mtcms 5.23

skyarc mtcms 5.22

skyarc mtcms 5.21

skyarc mtcms 5.2

skyarc mtcms

skyarc duplicateentry

skyarc autotagging