CVE-2009-1055: Medium severity Sitecore CMS vulnerability
Unspecified vulnerability in the web service in Sitecore CMS 5.3.1 rev. 071114 allows remote authenticated users to gain access to security databases, and obtain administrative and user credentials, via unknown vectors related to SOAP and XML requests.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1055?
CVE-2009-1055 is considered to be a high severity vulnerability due to its potential for unauthorized access to sensitive security databases.
How do I fix CVE-2009-1055?
To fix CVE-2009-1055, users should upgrade Sitecore CMS to version 5.3.2 or later where the vulnerability is addressed.
Who is affected by CVE-2009-1055?
CVE-2009-1055 affects users of Sitecore CMS versions 5.3.0 and 5.3.1.
What types of attacks can exploit CVE-2009-1055?
CVE-2009-1055 can be exploited via remote authenticated attacks that involve SOAP and XML requests.
What credentials can be compromised due to CVE-2009-1055?
CVE-2009-1055 may allow attackers to gain access to both administrative and user credentials.