ID:644 - Exploit for Improper access control in SPIP - CVE-2009-3041

 
Main Vulnerability Database Exploits ID:644 - Exploit for Improper access control in SPIP - CVE-2009-3041

ID:644 - Exploit for Improper access control in SPIP - CVE-2009-3041

Published: March 18, 2020


Vulnerability identifier: #VU2746
Vulnerability risk: Critical
CVE-ID: CVE-2009-3041
CWE-ID: CWE-284
Exploitation vector: Remote access
Vulnerable software:
SPIP

Link to public exploit:


Vulnerability description

The vulnerability allows a remote attacker to gain access to the target system.

The weakness exists due to improper access control related to installations and backups. A remote attacker can bypass implemented security control and compromise vulnerable website.

Successful exploitation of the vulnerability results in access to the vulnerable system.

Note: the vulnerability was being actively exploited.

Remediation