NetObjects Fusion 9 (NOF9) allows remote attackers to obtain sensitive information, including passwords, by downloading the _versioning_repository_/rollbacklog.xml file, then using it to download and modify the associated ZIP file to edit and republish the site.
References
Configurations
History
No history.
Information
Published : 2005-11-30 11:03
Updated : 2025-04-03 01:03
NVD link : CVE-2005-3923
Mitre link : CVE-2005-3923
CVE.ORG link : CVE-2005-3923
JSON object : View
Products Affected
netobjects
- netobjects_fusion
CWE