CVE-2008-0904
EUVD-2008-091122.02.2008, 21:44
Unspecified vulnerability in the download servlet in BEA Plumtree Collaboration 4.1 through SP2 and AquaLogic Interaction 4.2 through MP1 allows remote attackers to read arbitrary files via a crafted URL.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bea_systems | aqualogic_interaction | 4.2 |
| bea_systems | aqualogic_interaction | 4.2_mp1:_mp1 |
| bea_systems | plumtree_collaboration | 4.1 |
| bea_systems | plumtree_collaboration | 4.1_sp1:_sp1 |
| bea_systems | plumtree_collaboration | 4.1_sp2:_sp2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References