CVE-2008-6109
Last modified
CVE-2008-6109 is a vulnerability of currently unknown severity. Robin Rawson-Tetley Animal Shelter Manager (ASM) before 2.2.2 does not properly enforce the privileges of user accounts, which allows local users to bypass intended access restrictions by (1) opening unspecified screens, related to the "double click selector bug"; or modifying a (2) animal, (3) owner, (4) lost/found, (5) diary note, (6) owner donation, or (7) waiting list record, related to "change permissions" and the "new UI.". EPSS estimates a 0.29% chance of exploitation in the next 30 days.
Description
Robin Rawson-Tetley Animal Shelter Manager (ASM) before 2.2.2 does not properly enforce the privileges of user accounts, which allows local users to bypass intended access restrictions by (1) opening unspecified screens, related to the "double click selector bug"; or modifying a (2) animal, (3) owner, (4) lost/found, (5) diary note, (6) owner donation, or (7) waiting list record, related to "change permissions" and the "new UI."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Shelter Manager | Animal Shelter Manager | <= 2.2.1 |
| Shelter Manager | Animal Shelter Manager | 1.1 |
| Shelter Manager | Animal Shelter Manager | 1.3 |
| Shelter Manager | Animal Shelter Manager | 1.11 |
| Shelter Manager | Animal Shelter Manager | 1.12 |
| Shelter Manager | Animal Shelter Manager | 1.20 |
| Shelter Manager | Animal Shelter Manager | 1.22 |
| Shelter Manager | Animal Shelter Manager | 1.30 |
| Shelter Manager | Animal Shelter Manager | 1.30.1 |
| Shelter Manager | Animal Shelter Manager | 1.30.2 |
| Shelter Manager | Animal Shelter Manager | 1.30_beta |
| Shelter Manager | Animal Shelter Manager | 1.31 |
| Shelter Manager | Animal Shelter Manager | 1.32 |
| Shelter Manager | Animal Shelter Manager | 1.33 |
| Shelter Manager | Animal Shelter Manager | 1.34 |
| Shelter Manager | Animal Shelter Manager | 1.35 |
| Shelter Manager | Animal Shelter Manager | 1.36 |
| Shelter Manager | Animal Shelter Manager | 1.37 |
| Shelter Manager | Animal Shelter Manager | 1.38 |
| Shelter Manager | Animal Shelter Manager | 1.39 |
| Shelter Manager | Animal Shelter Manager | 1.40 |
| Shelter Manager | Animal Shelter Manager | 2.0.1 |
| Shelter Manager | Animal Shelter Manager | 2.0.2 |
| Shelter Manager | Animal Shelter Manager | 2.0.6 |
| Shelter Manager | Animal Shelter Manager | 2.0.8 |
| Shelter Manager | Animal Shelter Manager | 2.0.14 |
| Shelter Manager | Animal Shelter Manager | 2.0.15 |
| Shelter Manager | Animal Shelter Manager | 2.0.16 |
| Shelter Manager | Animal Shelter Manager | 2.0.17 |
| Shelter Manager | Animal Shelter Manager | 2.0.18 |
| Shelter Manager | Animal Shelter Manager | 2.0.21 |
| Shelter Manager | Animal Shelter Manager | 2.0.22 |
| Shelter Manager | Animal Shelter Manager | 2.1.0 |
| Shelter Manager | Animal Shelter Manager | 2.1.1 |
| Shelter Manager | Animal Shelter Manager | 2.2.0 |
References
- http://secunia.com/advisories/30041Vendor Advisory
- http://secunia.com/advisories/30041Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-6109?
How severe is CVE-2008-6109?
How do I fix CVE-2008-6109?
Are you affected by CVE-2008-6109?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
