Vulnerabilities > CVE-2004-1828 - Authentication Bypass vulnerability in Belchior Foundry Vcard 2.8/2.9

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
belchior-foundry
exploit available

Summary

Vcard 2.9 and possibly other versions does not require authorization to run uninstall.php, which could allow remote attackers to uninstall Vcard and delete database tables via a direct request to uninstall.php.

Vulnerable Configurations

Part Description Count
Application
Belchior_Foundry
2

Exploit-Db

descriptionBelchior Foundry VCard 2.8 Authentication Bypass Vulnerability. CVE-2004-1828. Webapps exploit for php platform
idEDB-ID:23843
last seen2016-02-02
modified2004-03-17
published2004-03-17
reportersaudi linux
sourcehttps://www.exploit-db.com/download/23843/
titleBelchior Foundry VCard 2.8 - Authentication Bypass Vulnerability