CVE-2009-2481
16.07.2009, 16:30
mt-wizard.cgi in Six Apart Movable Type before 4.261, when global templates are not initialized, allows remote attackers to bypass access restrictions and (1) send e-mail to arbitrary addresses or (2) obtain sensitive information via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
six_apart | movable_type | 1.54 |
six_apart | movable_type | 2.6 |
six_apart | movable_type | 2.63 |
six_apart | movable_type | 3.3 |
six_apart | movable_type | 3.16 |
six_apart | movable_type | 3.17 |
six_apart | movable_type | 3.32 |
six_apart | movable_type | 3.33 |
six_apart | movable_type | 3.36 |
six_apart | movable_type | 4.20 |
six_apart | movable_type | 4.20 |
six_apart | movable_type | 4.20 |
six_apart | movable_type | 4.20 |
six_apart | movable_type | 4.25 |
sixapart | movable_type | 𝑥 ≤ 4.26 |
sixapart | movable_type | 1.00 |
sixapart | movable_type | 1.1 |
sixapart | movable_type | 1.2 |
sixapart | movable_type | 1.3 |
sixapart | movable_type | 1.4 |
sixapart | movable_type | 1.5 |
sixapart | movable_type | 1.31 |
sixapart | movable_type | 3.0d:d |
sixapart | movable_type | 3.1 |
sixapart | movable_type | 3.01d:d |
sixapart | movable_type | 3.2 |
sixapart | movable_type | 3.3 |
sixapart | movable_type | 3.11 |
sixapart | movable_type | 3.12 |
sixapart | movable_type | 3.14 |
sixapart | movable_type | 3.15 |
sixapart | movable_type | 3.16 |
sixapart | movable_type | 3.17 |
sixapart | movable_type | 3.32 |
sixapart | movable_type | 3.33 |
sixapart | movable_type | 3.34 |
sixapart | movable_type | 3.35 |
sixapart | movable_type | 4.0 |
sixapart | movable_type | 4.0 |
sixapart | movable_type | 4.01 |
sixapart | movable_type | 4.1 |
sixapart | movable_type | 4.1 |
sixapart | movable_type | 4.01 |
sixapart | movable_type | 4.01:b |
sixapart | movable_type | 4.01:b |
sixapart | movable_type | 4.2 |
sixapart | movable_type | 4.2 |
sixapart | movable_type | 4.2 |
sixapart | movable_type | 4.12 |
sixapart | movable_type | 4.12 |
sixapart | movable_type | 4.21 |
sixapart | movable_type | 4.21 |
sixapart | movable_type | 4.21 |
sixapart | movable_type | 4.23 |
sixapart | movable_type | 4.23 |
sixapart | movable_type | 4.23 |
sixapart | movable_type | 4.25 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References