CVE-2008-2882
EUVD-2008-287526.06.2008, 17:41
upgrade.asp in sHibby sHop 2.2 and earlier does not require administrative authentication, which allows remote attackers to update a file or have unspecified other impact via a direct request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| aspindir | shibby_shop | 𝑥 ≤ 2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References