CVE-2010-3713
Published Oct 28, 2010
Last updated 14 years ago
Overview
- Description
- rss.php in UseBB before 1.0.11 does not properly handle forum configurations in which a user has the view permission but not the read permission, which allows remote attackers to bypass intended access restrictions by reading a forum feed in combination with a topic feed.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:usebb:usebb:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AAA5C344-C6A9-49F4-B18D-D7468CEAE662", "versionEndIncluding": "1.0.10" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47515248-71FF-451D-BA3A-B3729A08E12E" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3F89271-645A-478B-BBE7-65AC42D9CC0A" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "575F8D44-98DF-4D4E-B87D-09D9D6B5C56A" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF43C451-3507-4362-96D0-152A49ED3342" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "031AA5C9-E4C8-46E5-A299-BCECD0591D66" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A045B4F-3A02-41D7-A2E0-3DD224D7C871" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.2.3:a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72563CD8-DFBD-4CDE-AB1E-A6B9BA49F28F" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7D32DFF5-107C-4A8B-AD35-E918197C396C" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6FF8DED1-980C-4463-A4BC-D8326D98FB78" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E736160-C577-4BCD-BBA4-DF0EF3B0382C" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07549F5B-69A1-4E16-8989-9CB91B0529AD" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.4.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "576D4057-3550-48DF-98EB-06DB8FF9D0CC" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C7E57778-CCE4-473C-9ED3-FC74F1C3E7E9" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7322CBAE-D9DA-4663-9D4A-AEEF5F0C0CEA" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.5.1:a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D089CBE4-43CB-4A44-8448-A7DAC1CB6EE3" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4AADFB3B-28C9-40E3-B901-191B2303A5E0" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.6:a:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "501B7B61-314E-4AF8-806D-48D11BED492E" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.7:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "517CDEAA-FE3C-4756-AC1F-7DA91CFDD222" }, { "criteria": "cpe:2.3:a:usebb:usebb:0.7:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C7FBF83D-7AA3-44CD-A73F-52F6B3654572" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6814F4A-C8B0-4450-8EC7-91EF26F75F13" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21936F26-F983-4BF4-880F-732D0BD09261" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3AA4230-80F4-4ADE-A3AA-AD116090629F" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B648DBF3-CB2D-42C9-80D4-37E9F61E39CC" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0C3D75D7-190D-4EB3-91DD-940B9DCEC07F" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "62A0A3E3-831A-4A68-B9BC-02DE2EA92334" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5D30AD4-DC83-493B-9324-5432C7B6DACE" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "62AD324F-3397-4389-A3C0-E0BC94D2199B" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1359EA23-4C62-432C-8E8E-7AE8389EFB06" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB7811B9-46BF-42BF-A9E9-382CC17F1A6A" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE889213-45D4-4DBD-976F-DB061C973E35" }, { "criteria": "cpe:2.3:a:usebb:usebb:1.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA74E673-CFD4-4F98-B660-A873140EDC7E" } ], "operator": "OR" } ] } ]