CVE-2008-2882 Information
Feb 14, 2021
cve
Description
upgrade.asp in sHibby sHop 2.2 and earlier does not require administrative authentication which allows remote attackers to update a file or have unspecified other impact via a direct request.
Reference
http://secunia.com/advisories/30787 http://securityreason.com/securityalert/3962 https://exchange.xforce.ibmcloud.com/vulnerabilities/43296 https://www.exploit-db.com/exploits/5895
Share on: