CVE-2008-2230 - CVE House
Back to Database
Status published Medium CVE-2008-2230

Untrusted search path vulnerability in (1) reportbug 3.8 and 3.31,...

Vulnerability Description

Untrusted search path vulnerability in (1) reportbug 3.8 and 3.31, and (2) reportbug-ng before 0.2008.06.04, allows local users to execute arbitrary code via a malicious module file in the current working directory.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-2230

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

reportbug-ng

View all reports →

Affected Software

reportbug, reportbug-ng
Vulnerable Versions:
3.8, 3.31, 0.2007.03.10, 0.2007.03.11, 0.2007.03.13, 0.2007.03.14, 0.2007.03.15, 0.2007.03.17, 0.2007.03.19, 0.2007.03.19.2, 0.2007.03.20, 0.2007.03.24, 0.2007.03.27, 0.2007.03.28, 0.2007.03.29, 0.2007.04.07, 0.2007.04.07.2, 0.2007.04.13, 0.2007.04.16, 0.2007.04.20, 0.2007.04.23, 0.2007.04.27, 0.2007.05.02, 0.2007.05.27, 0.2007.05.28, 0.2007.05.31, 0.2007.06.13, 0.2007.06.27, 0.2007.07.08, 0.2007.07.12, 0.2007.07.18, 0.2007.07.19, 0.2007.08.02, 0.2007.08.03, 0.2007.08.03.2, 0.2007.08.12, 0.2007.08.20, 0.2007.10.30, 0.2008.01.20, 0.2008.03.26, 0.2008.03.28

Timeline

Official Publish: June 11th, 2008
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.