VulnerabilityModified
CVE-2008-7205
Unspecified vulnerability in the product view functionality in VirtueMart 1.0.13a and earlier allows remote attackers to read arbitrary files via vectors related to a template file.
MEDIUM 4.3EPSS 1.10%
Does this matter?
Lower severity and a low EPSS score (1.10%). Track it; it rarely justifies an emergency change on its own.
Description
Unspecified vulnerability in the product view functionality in VirtueMart 1.0.13a and earlier allows remote attackers to read arbitrary files via vectors related to a template file.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
- EPSS
- 1.10% probability · 64th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- virtuemart/virtuemart
- Source
- cve@mitre.org
References
- http://osvdb.org/41761
- http://secunia.com/advisories/28722Vendor Advisory
- http://virtuemart.net/index.php?option=com_content&task=view&id=275&Itemid=127Patch, Vendor Advisory
- http://www.securityfocus.com/bid/27532Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40114
- http://osvdb.org/41761
- http://secunia.com/advisories/28722Vendor Advisory
- http://virtuemart.net/index.php?option=com_content&task=view&id=275&Itemid=127Patch, Vendor Advisory
- http://www.securityfocus.com/bid/27532Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40114
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.