CVE-2005-3923

NetObjects Fusion 9 (NOF9) allows remote attackers to obtain sensitive information, including passwords, by downloading the _versioning_repository_/rollbacklog.xml file, then using it to download and modify the associated ZIP file to edit and republish the site.
Configurations

Configuration 1 (hide)

cpe:2.3:a:netobjects:netobjects_fusion:9:*:*:*:*:*:*:*

History

21 Nov 2024, 00:03

Type Values Removed Values Added
References () http://secunia.com/advisories/17667 - Vendor Advisory () http://secunia.com/advisories/17667 - Vendor Advisory
References () http://www.schneier.com/blog/archives/2005/11/possible_net_ob.html - () http://www.schneier.com/blog/archives/2005/11/possible_net_ob.html -
References () http://www.vupen.com/english/advisories/2005/2555 - () http://www.vupen.com/english/advisories/2005/2555 -

Information

Published : 2005-11-30 11:03

Updated : 2025-04-03 01:03


NVD link : CVE-2005-3923

Mitre link : CVE-2005-3923

CVE.ORG link : CVE-2005-3923


JSON object : View

Products Affected

netobjects

  • netobjects_fusion