Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2008-7253

EPSS 1.46% · P81
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2008-7253

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authentication credentials via a cross-site tracing (XST) attack, a related issue to CVE-2004-2763 and CVE-2005-3398.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
IBM Lotus Domino 服务器 网络服务器设置 信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
IBM Lotus Domino Server的网络服务器及可能的6.0至8.0版本中存在有缺陷的设置。该设置会激活HTTP TRACE方法,这会使远程攻击者易于借助跨站跟踪(XST)盗取cookies和权限认证信息, 该漏洞与CVE-2004-2763 和 CVE-2005-3398相关。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2008-7253

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2008-7253

登录查看更多情报信息。

Same Patch Batch · n/a · 2010-01-25 · 18 CVEs total

CVE-2009-4248RealNetworks RealPlayer RTSP SET_PARAMETER请求缓冲区溢出漏洞
CVE-2010-0389Sun Java System Web Server 7.0 Update 6版本中拒绝服务漏洞
CVE-2010-0388Sun Java System Web Server WebDAV 格式字符串漏洞
CVE-2010-0387Sun Java System Web Server Digest Authentication 远程缓冲区溢出漏洞
CVE-2010-0386Sun Java System Application Server 7远程攻击信息泄露漏洞
CVE-2010-0385Tor官方目录查询请求敏感信息泄露漏洞
CVE-2010-0384Tor目录镜像功能客户身份泄露漏洞
CVE-2010-0383Tor官方目录查询请求信息泄露漏洞
CVE-2009-4257RealNetworks RealPlayer smlrender.dll SMIL文件堆缓冲区溢出漏洞
CVE-2005-4884Oracle Database Server 10.1.0.4 (10g)远程攻击拒绝服务漏洞
CVE-2009-4247RealNetworks RealPlayer ASM RuleBook栈缓冲区溢出漏洞
CVE-2009-4246RealNetworks多个R产品畸形.RJS皮肤文件堆缓冲区溢出漏洞
CVE-2009-4245RealNetworks RealPlayer GIF压缩文件堆缓冲区溢出漏洞
CVE-2009-4244RealNetworks多个R产品堆缓冲区溢出漏洞
CVE-2009-4243RealNetworks多个产品特制媒体文件 未明漏洞
CVE-2009-4242RealNetworks RealPlayer GIF文件堆缓冲区溢出漏洞
CVE-2009-4241RealNetworks RealPlayer ASM Rulebook缓冲区溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2008-7253

No comments yet


Leave a comment