Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-4325

lib/viewvc.py in ViewVC 1.0.5 uses the content-type parameter in the HTTP request for the Content-Type header in the HTTP response, which allows remote attackers to cause content to be misinterpreted by the browser via a content-type parameter that is inconsistent with the requested object. NOTE: this issue might not be a vulnerability, since it requires attacker access to the repository that is being viewed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.6%
CVSS Severity
CVSS v2 Score 5.8
References
Products affected by CVE-2008-4325
  • Viewvc » Viewvc » Version: 1.0.5
    cpe:2.3:a:viewvc:viewvc:1.0.5


Contact Us

Shodan ® - All rights reserved