Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2009-2075

EPSS 0.50% · P66
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2009-2075

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Nodequeue 5.x before 5.x-2.7 and 6.x before 6.x-2.2, a module for Drupal, does not properly restrict access when displaying node titles, which has unknown impact and attack vectors.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Angrydonuts Nodequeue安全绕过和访问控制漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Drupal Nodequeue 5.x-2.7版本之前的5.x版本以及6.x-2.2之前的6.x版本当展示字节标题时没有适当的限制访问权,这会产生未知影响和攻击向量。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2009-2075

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2009-2075

登录查看更多情报信息。

Same Patch Batch · n/a · 2009-06-16 · 18 CVEs total

CVE-2009-2082Creative Web Solutions Multiple level CMS "insidepage.php" SQL注入漏洞
CVE-2009-2081phpWebThings "help.php" 目录遍历漏洞
CVE-2009-2080MRCGIGUY The Ticket System "admin.php" 权限许可漏洞
CVE-2009-2079Drupal "Taxonomy Manager Administrative Page" 跨站脚本攻击漏洞
CVE-2009-2078Drupal Booktree多个跨站脚本攻击漏洞
CVE-2009-2077Angrydonuts Views模块安全绕过和访问控制漏洞
CVE-2009-2076Drupal 模块"Views" 跨站脚本攻击漏洞
CVE-2009-2074Drupal 模块"Nodequeue" 跨站脚本攻击漏洞
CVE-2009-2083Drupal Taxonomy Manager Administrative Page跨站脚本攻击漏洞
CVE-2009-1389Linux kernel 缓冲区错误漏洞
CVE-2009-2011DX Studio Player shell.execute JavaScript API方法远程任意外壳指令注入漏洞
CVE-2009-1390Mutt 'mutt_ssl.c' X.509 Certificate Chain 安全绕过漏洞
CVE-2008-5515Apache Tomcat 路径遍历漏洞
CVE-2009-2084Llnl Simple Linux Utility for Resource Management本地特权升级漏洞
CVE-2009-1761CA ARCserve Backup消息引擎拒绝服务漏洞
CVE-2009-1719Sun Java运行时环境Aqua Look and Feel界面包权限提升漏洞
CVE-2009-1391Compress::Raw::Zlib Perl模块单字节溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2009-2075

No comments yet


Leave a comment