Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2009-4765

EPSS 0.32% · P55
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2009-4765

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
CNR Hikaye Portal 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for db/hikaye.mdb.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
CNR Hikaye Portal 数据库'db/hikaye.mdb'信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
CNR Hikaye Portal 数据库'db/hikaye.mdb'存在信息泄露漏洞。CNR Hikaye在web根目录下存储敏感信息而没有进行充分的访问控制,远程攻击者可以借助对数据库 db/hikaye.mdb的一个直接请求下载数据库。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2009-4765

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2009-4765

Please Login to view more intelligence information

Same Patch Batch · n/a · 2010-04-13 · 66 CVEs total

CVE-2010-0897Oracle Sun Java System Directory Server 组件未明漏洞
CVE-2009-4510Vsecurity TANDBERG Video Communication Server SSH服务多个远程攻击漏洞
CVE-2009-4509Vsecurity TANDBERG Video Communication Server 多个远程漏洞
CVE-2010-1363Extremejoomla 'JProjects' SQL注入漏洞
CVE-2010-1369Pre Classified Listings 'signup.asp' SQL注入漏洞
CVE-2010-1368GameScript 'index.php' SQL 注入漏洞
CVE-2010-1367Uiga Fan Club 脚本'admin/admin_login.php'多个跨站脚本攻击漏洞
CVE-2010-1366Uiga Fan Club admin/admin_login.php 多个SQL注入漏洞
CVE-2010-1365Uiga Fan Club 脚本'index.php'SQL注入漏洞
CVE-2010-1364Uiga Personal Portal 脚本'index.php'SQL注入漏洞
CVE-2010-1370Pre Classified Listings ASP 'detailad.asp'SQL注入漏洞
CVE-2010-0896Oracle Sun Product Suite 'Sun Convergence'组件未明漏洞
CVE-2010-0895Oracle Sun Product Suite 'Sun Convergence'组件未明漏洞
CVE-2010-0894Oracle Sun Java System Access Manager组件未明漏洞
CVE-2010-0893Oracle Sun Convergence组件未明漏洞
CVE-2010-0891Oracle Sun Product Suite 'Sun Management Center'组件未明漏洞
CVE-2010-0890Oracle Sun Product Suite/OpenSolaris 'Solaris'组件未明漏洞
CVE-2010-0889Oracle Sun Product Suite OpenSolaris 'Solaris'组件未明漏洞
CVE-2010-0888Oracle Sun Product Suite 'Sun Ray Server Software'组件未明漏洞
CVE-2010-0885Oracle Sun Product Suite 'Sun Java System Communications Express'组件未明漏洞

Showing top 20 of 66 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2009-4765

No comments yet


Leave a comment