← Back

CVE-2008-0904

nvd nist
Published: Feb 22, 2008Modified: Apr 23, 2026

JSON object

Loading...
7.8
Vector
AV:N/AC:L/Au:N/C:C/I:N/A:N
Exploitability: 10.0 / Impact: 6.9
Source: NVD

Description

Unspecified vulnerability in the download servlet in BEA Plumtree Collaboration 4.1 through SP2 and AquaLogic Interaction 4.2 through MP1 allows remote attackers to read arbitrary files via a crafted URL.

Affected (5)

2 products
Aqualogic Interaction
Plumtree Collaboration
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Bea Systems
Version 4.2
Version 4.2_mp1
Bea Systems
Version 4.1
Version 4.1_sp1
Version 4.1_sp2

References (10)

Source: cve@mitre.org
Patch
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.