CVE-2008-0893
published 2008-04-16CVE-2008-0893: Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows remote…
PriorityP340high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.01%
78.7th percentile
Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows remote attackers to perform administrative actions.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | directory_server | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-84ph-43p3-259x: Red Hat Administration Server, as used by Red Hat Directory Server 8
ghsa_unreviewed·2022-05-01
CVE-2008-0893 [HIGH] GHSA-84ph-43p3-259x: Red Hat Administration Server, as used by Red Hat Directory Server 8
Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows remote attackers to perform administrative actions.
Red Hat
Server: unrestricted access to CGI scripts
vendor_redhat·2008-04-15·CVSS 7.5
CVE-2008-0893 [HIGH] Server: unrestricted access to CGI scripts
Server: unrestricted access to CGI scripts
Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows remote attackers to perform administrative actions.
No detection rules found.
No public exploits indexed.
http://secunia.com/advisories/29761http://secunia.com/advisories/29826http://www.redhat.com/support/errata/RHSA-2008-0201.htmlhttp://www.securityfocus.com/bid/28802http://www.securitytracker.com/id?1019857https://bugzilla.redhat.com/show_bug.cgi?id=437320https://exchange.xforce.ibmcloud.com/vulnerabilities/41843https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00380.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-April/msg00386.htmlhttp://secunia.com/advisories/29761http://secunia.com/advisories/29826http://www.redhat.com/support/errata/RHSA-2008-0201.htmlhttp://www.securityfocus.com/bid/28802http://www.securitytracker.com/id?1019857https://bugzilla.redhat.com/show_bug.cgi?id=437320https://exchange.xforce.ibmcloud.com/vulnerabilities/41843https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00380.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-April/msg00386.html
2008-04-16
Published