Vulnerabilities > CVE-2004-2058 - Unspecified vulnerability in Xlinesoft Asprunner
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN xlinesoft
nessus
Summary
ASPRunner 2.4 allows remote attackers to gain sensitive information via (1) hidden form fields or (2) error messages.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |
Nessus
NASL family | CGI abuses |
NASL id | ASPRUNNER_MULT.NASL |
description | The remote host is running ASPrunner prior to version 2.5. There are multiple flaws in this version of ASPrunner which would enable a remote attacker to read and/or modify potentially confidential data. An attacker, exploiting this flaw, would need access to the web server via the network. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 14233 |
published | 2004-08-09 |
reporter | This script is Copyright (C) 2004-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/14233 |
title | ASPrunner 2.4 Multiple Vulnerabilities |
code |
|
References
- http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0011.html
- http://archives.neohapsis.com/archives/vulnwatch/2004-q3/0011.html
- http://ferruh.mavituna.com/article/?574
- http://ferruh.mavituna.com/article/?574
- http://marc.info/?l=bugtraq&m=109086977330418&w=2
- http://marc.info/?l=bugtraq&m=109086977330418&w=2
- http://secunia.com/advisories/12164
- http://secunia.com/advisories/12164
- http://securitytracker.com/id?1010777
- http://securitytracker.com/id?1010777
- http://www.osvdb.org/8252
- http://www.osvdb.org/8252
- http://www.securityfocus.com/bid/10799
- http://www.securityfocus.com/bid/10799
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16800
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16800