CVE-2005-3630
Published Dec 31, 2005
Last updated 16 years ago
Overview
- Description
- Fedora Directory Server before 10 allows remote attackers to obtain sensitive information, such as the password from adm.conf via an IFRAME element, probably involving an Apache httpd.conf configuration that orders "allow" directives before "deny" directives.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:redhat:fedora_core:1.0:*:directory_server:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "883A1946-9017-4FA7-9517-2D074E764B14" } ], "operator": "OR" } ] } ]