CVE-2008-0475: Input Validation
ManageEngine Applications Manager 8.1 build 8100 allows remote attackers to obtain sensitive information ( Home->Summary) via an invalid URI, as demonstrated by the "/-" URI. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0475?
The severity of CVE-2008-0475 is classified as a medium risk due to potential information disclosure.
How do I fix CVE-2008-0475?
To fix CVE-2008-0475, upgrade to a patched version of ManageEngine Applications Manager that addresses this vulnerability.
What kind of attack does CVE-2008-0475 facilitate?
CVE-2008-0475 facilitates remote attacks that can lead to sensitive information disclosure via invalid URIs.
Which version of ManageEngine Applications Manager is affected by CVE-2008-0475?
ManageEngine Applications Manager version 8.1 build 8100 is affected by CVE-2008-0475.
Is CVE-2008-0475 exploitable remotely?
Yes, CVE-2008-0475 is exploitable remotely, allowing attackers to access sensitive information.