CVE-2010-5094
https://notcve.org/view.php?id=CVE-2010-5094
The deleteinstallfiles function in control/ContentController.php in SilverStripe 2.3.x before 2.3.7 does not require ADMIN permissions, which allows remote attackers to delete index.php and "disrupt mod_rewrite-less URL routing." La función deleteinstallfiles en control/ContentController.php en SilverStripe v2.3.x anterior a v2.3.7 no requiere permisos de adminstrador (ADMIN), lo cual permite a atacantes remotos borrar el fichero index.php e interrumpir el enrutado URL enmod_rewrite-less (disrupt mod_rewrite-less URL routing). • http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.3.7 http://open.silverstripe.org/changeset/101227 http://www.openwall.com/lists/oss-security/2012/04/30/1 http://www.openwall.com/lists/oss-security/2012/04/30/3 http://www.openwall.com/lists/oss-security/2012/05/01/3 http://www.silverstripe.org/security-releases • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2010-5187
https://notcve.org/view.php?id=CVE-2010-5187
SilverStripe 2.3.x before 2.3.8 and 2.4.x before 2.4.1, when running on servers with certain configurations, allows remote attackers to obtain sensitive information via a direct request to PHP files in the (1) sapphire, (2) cms, or (3) mysite folders, which reveals the installation path in an error message. SilverStripe v2.3.x anterior a v2.3.8 y v2.4.x anterior a v2.4.1, cuando está en ejecución el servidores con ciertas configuraciones, permite a atacantes remotos obtener información sensible a través de una petición directa a ficheros PHP en el (1) sapphire, (2) cms, o (3) carpetas mysite, lo que revela la ruta de instalación en un mensaje de error. • http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.3.8 http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.4.1 http://www.openwall.com/lists/oss-security/2012/04/30/1 http://www.openwall.com/lists/oss-security/2012/04/30/3 http://www.openwall.com/lists/oss-security/2012/05/01/3 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2010-5188
https://notcve.org/view.php?id=CVE-2010-5188
SilverStripe 2.3.x before 2.3.6 allows remote attackers to obtain sensitive information via the (1) debug_memory parameter to core/control/Director.php or (2) debug_profile parameter to main.php. SilverStripe v2.3.x anterior a v2.3.6 permite a atacantes remotos obtener información sensible a través de (1) el parámetro debug_memory a core/control/Director.php o (2) el parámetro debug_profile a main.php. • http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.3.6 http://groups.google.com/group/silverstripe-announce/browse_thread/thread/c75fbd7926ed2725?tvc=2&fwc=1 http://open.silverstripe.org/changeset/98229 http://open.silverstripe.org/changeset/98230 http://secunia.com/advisories/38697 http://www.openwall.com/lists/oss-security/2012/05/01/3 http://www.osvdb.org/62541 http://www.securityfocus.com/bid/38394 https://exchange.xforce.ibmcloud.com/vulnerabilities/56546 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2010-5095
https://notcve.org/view.php?id=CVE-2010-5095
Cross-site scripting (XSS) vulnerability in SilverStripe 2.3.x before 2.3.6 allows remote attackers to inject arbitrary web script or HTML via vectors related to DataObjectSet pagination. Vulnerabilidad de ejecución de código en sitios cruzados (XSS) en SilverStripe v2.3.x anterior a v2.3.6 permite a atacantes remotos inyectar código web o HTML arbitrario a través de vectores relacionados con la paginación DataObjectSet. • http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.3.6 http://groups.google.com/group/silverstripe-announce/browse_thread/thread/c75fbd7926ed2725?tvc=2&fwc=1 http://secunia.com/advisories/38697 http://www.openwall.com/lists/oss-security/2012/04/30/1 http://www.openwall.com/lists/oss-security/2012/04/30/3 http://www.openwall.com/lists/oss-security/2012/05/01/3 http://www.osvdb.org/62541 http://www.securityfocus.com/bid/38394 http://www.silverstripe. • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2010-5088
https://notcve.org/view.php?id=CVE-2010-5088
Multiple cross-site request forgery (CSRF) vulnerabilities in SilverStripe 2.3.x before 2.3.9 and 2.4.x before 2.4.3 allow remote attackers to hijack the authentication of administrators via destructive controller actions, a different vulnerability than CVE-2010-5087. Múltiples vulnerabilidades de solicitudes falsificadas en sitios cruzados (CSRF) en SilverStripe v2.3.x anterior a v2.3.9 y v2.4.x anterior a v2.4.3 permite a atacantes remotos secuestrar la autenticación de los administradores a través de acciones destructivas del controlador, una vulnerabilidad diferente de CVE-2010-5087. • http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.3.9 http://doc.silverstripe.org/sapphire/en/trunk/changelogs//2.4.3 http://holisticinfosec.org/content/view/157/45 http://open.silverstripe.org/changeset/113275 http://open.silverstripe.org/changeset/113282 http://secunia.com/advisories/41717 http://www.openwall.com/lists/oss-security/2011/01/03/12 http://www.openwall.com/lists/oss-security/2012/04/30/1 http://www.openwall.com/lists/oss-security/2012 • CWE-352: Cross-Site Request Forgery (CSRF) •