CVE-2008-2882 Information

Description

upgrade.asp in sHibby sHop 2.2 and earlier does not require administrative authentication which allows remote attackers to update a file or have unspecified other impact via a direct request.

Reference

http://secunia.com/advisories/30787 http://securityreason.com/securityalert/3962 https://exchange.xforce.ibmcloud.com/vulnerabilities/43296 https://www.exploit-db.com/exploits/5895

Share on: