← Back

CVE-2011-3993

nvd nist
Published: Nov 3, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.5
Vector
AV:N/AC:L/Au:S/C:N/I:P/A:P
Exploitability: 8.0 / Impact: 4.9
Source: NVD

Description

SKYARC MTCMS before 5.252, and the MultiFileUploader 0.44 and earlier, DuplicateEntry 1.2 and earlier, MailPack 1.741 and earlier, and AutoTagging 0.08 and earlier plugins for Movable Type, uses weak permissions, which allows remote authenticated users to modify files and settings via unspecified vectors.

Affected (17)

5 products
Autotagging
Duplicateentry
Mailpack
Mtcms
Multifileuploader
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Up to 0.08
Up to 1.2
Up to 1.741
Skyarc
Up to 5.251
Version 5.21
Version 5.22
Version 5.23
Version 5.24
Version 5.24
Version 5.24
Version 5.251
Version 5.251
Version 5.25
Version 5.25
Version 5.25
Version 5.2
Up to 0.44

Related CWEs

References (6)

Source: vultures@jpcert.or.jp
Source: vultures@jpcert.or.jp
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.