« Volver al listado

CVE-2008-7164

Estado: ModificadaAlta (10)—

Múltiples vulnerabilidades sin especificar en Shareaza anterior a v2.3.1.0 tiene un impacto y vectores de ataque desconocidos relacionados con "soluciones de seguridad muy importantes" posiblemente involucrado con notificaciones de actualización y un dominio que no es controlado por el fabricante.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2008-7164",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 10,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:C/I:C/A:C",
          "authentication": "NONE",
          "integrityImpact": "COMPLETE",
          "accessComplexity": "LOW",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "COMPLETE"
        },
        "acInsufInfo": true,
        "impactScore": 10,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2009-09-04T10:30:01.827",
  "references": [
    {
      "url": "http://osvdb.org/40217",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/28302",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://sourceforge.net/project/shownotes.php?group_id=110672&release_id=565250",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/27171",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39484",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/40217",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/28302",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://sourceforge.net/project/shownotes.php?group_id=110672&release_id=565250",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/27171",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39484",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Multiple unspecified vulnerabilities in Shareaza before 2.3.1.0 have unknown impact and attack vectors related to \"very important security fixes,\" possibly involving update notifications and a domain that is no longer controlled by the vendor."
    },
    {
      "lang": "es",
      "value": "Múltiples vulnerabilidades sin especificar en Shareaza anterior a v2.3.1.0 tiene un impacto y vectores de ataque desconocidos relacionados con \"soluciones de seguridad muy importantes\" posiblemente involucrado con notificaciones de actualización y un dominio que no es controlado por el fabricante."
    }
  ],
  "lastModified": "2026-06-16T23:03:44.463",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:ryo-oh-ki:shareaza:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D4AA2E00-BE17-4ADA-8954-CDA49EB28AB9",
              "versionEndIncluding": "2.3.0.0"
            },
            {
              "criteria": "cpe:2.3:a:ryo-oh-ki:shareaza:2.0.0.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "1680FDCE-CF85-452B-980F-C9BD8E5E0DE1"
            },
            {
              "criteria": "cpe:2.3:a:ryo-oh-ki:shareaza:2.2.0.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A9003C2C-ABCB-42EB-BC30-75CE24E23A07"
            },
            {
              "criteria": "cpe:2.3:a:ryo-oh-ki:shareaza:2.2.1.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "BFDF64A4-9989-41B4-8A75-97B138330C68"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}