PT-2005-4445 · Xmb · Xmb

CVE-2005-3689

·

Publicado

2005-11-19

·

Atualizado

2024-02-14

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions XMB version 1.9.2
Description The issue allows remote attackers to obtain the installation path. This is achieved by providing an invalid fid parameter in a newthread action to the post.php file.
Recommendations For XMB version 1.9.2, consider restricting access to the post.php file or validating the fid parameter to prevent exploitation. As a temporary workaround, avoid using the newthread action with unvalidated input until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-3689

Produtos afetados

Xmb